Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40369
HistoryMay 01, 2023 - 10:58 p.m.

Privilege Escalation

2023-05-0122:58:11
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
github
kubewarden
controller
remote attacker
secrets
serviceaccount
exfiltration
cluster
software

0.001 Low

EPSS

Percentile

43.1%

github.com/kubewarden/kubewarden-controller is vulnerable to Privilege Escalation. A remote authenticated attacker is able to read arbitrary secrets if they get access to the ServiceAccount of the kubewarden-controller which results in the exfiltration of all secret tokens in the cluster.

0.001 Low

EPSS

Percentile

43.1%

Related for VERACODE:40369