vulnerability

Alpine Linux: CVE-2020-16250: Insufficient Verification of Data Authenticity

Severity
7
CVSS
(AV:N/AC:L/Au:N/C:P/I:P/A:P)
Published
Aug 26, 2020
Added
Aug 22, 2024
Modified
Oct 14, 2024

Description

HashiCorp Vault and Vault Enterprise versions 0.7.1 and newer, when configured with the AWS IAM auth method, may be vulnerable to authentication bypass. Fixed in 1.2.5, 1.3.8, 1.4.4, and 1.5.1..

Solution

alpine-linux-upgrade-vault
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.