Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-1677
HistorySep 01, 2022 - 9:15 p.m.

Design/Logic Flaw

2022-09-0121:15:00
PRIOn knowledge base
www.prio-n.com
7
openshift container platform
security flaw
haproxy
traffic redirection
malformed entry
cluster router

7.3 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.4%

In OpenShift Container Platform, a user with permissions to create or modify Routes can craft a payload that inserts a malformed entry into one of the cluster router’s HAProxy configuration files. This malformed entry can match any arbitrary hostname, or all hostnames in the cluster, and direct traffic to an arbitrary application within the cluster, including one under attacker control.

7.3 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

31.4%

Related for PRION:CVE-2022-1677