Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:12172
HistoryJan 15, 2019 - 9:13 a.m.

Authentication Bypass

2019-01-1509:13:26
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

EPSS

0.004

Percentile

72.0%

atomic-openshift is vulnerable to authentication bypass attacks. The vulnerability exists as it was found that Kubernetes as used by Openshift Enterprise 3 did not correctly validate X.509 client intermediate certificate host name fields. An attacker could use this flaw to bypass authentication requirements by using a specially crafted X.509 certificate.

EPSS

0.004

Percentile

72.0%