Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39887
HistoryMar 21, 2023 - 9:12 a.m.

Improper Access Control

2023-03-2109:12:38
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6
improper access control
vulnerability
cilium

0.0004 Low

EPSS

Percentile

14.2%

github.com/cilium/cilium is vulnerable to Improper Access Control. An authenticated attacker is able to write to /opt/cni/bin due to a hostPath mount in the agent pod, which allows the attacker to gain access to the underlying node by replacing the CNI binary with their own malicious binary and wait for the creation of a new pod on the node.

0.0004 Low

EPSS

Percentile

14.2%

Related for VERACODE:39887