Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:11374
HistoryJan 15, 2019 - 9:01 a.m.

Authentication Bypass

2019-01-1509:01:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

EPSS

0.006

Percentile

79.0%

openshift-origin-broker is vulnerable to authentication bypass attacks. The vulnerability exists as the openshift-origin-broker in Red Hat OpenShift Enterprise 2.0.5, 1.2.7, and earlier does not properly handle authentication requests from the remote-user auth plugin, which allows remote attackers to bypass authentication and impersonate arbitrary users via the X-Remote-User header in a request to a passthrough trigger.

EPSS

0.006

Percentile

79.0%

Related for VERACODE:11374