vulnerability

Kubernetes: CVE-2016-1905: Access control vulnerability

Severity
4
CVSS
(AV:N/AC:L/Au:S/C:N/I:P/A:N)
Published
Feb 3, 2016
Added
Jun 14, 2018
Modified
Nov 27, 2024

Description

The API server in Kubernetes does not properly check admission control, which allows remote authenticated users to access additional resources via a crafted patched object.

Solution

kubernetes-upgrade-1_2_0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.