A Missing Authorization vulnerability in of SUSE Rancher allows authenticated user to create an unauthorized shell pod and kubectl access in the local cluster This issue affects: SUSE Rancher Rancher versions prior to 2.5.17; Rancher versions prior to 2.6.10; Rancher versions prior to 2.7.1.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: suse

Published: 2023-02-07T00:00:00

Updated: 2024-08-03T03:00:54.295Z

Reserved: 2021-12-16T00:00:00

Link: CVE-2022-21953

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-02-07T13:15:09.437

Modified: 2023-02-16T22:23:01.503

Link: CVE-2022-21953

cve-icon Redhat

No data.