A cross site scripting flaw exists in the tetonic-console component of Openshift Container Platform 3.11. An attacker with the ability to create pods can use this flaw to perform actions on the K8s API as the victim.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2018-09-11T16:00:00
Updated: 2024-08-05T07:54:36.023Z
Reserved: 2018-05-09T00:00:00
Link: CVE-2018-10937
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-09-11T16:29:00.230
Modified: 2019-10-09T23:33:17.027
Link: CVE-2018-10937
Redhat