Insecure permissions in contour v1.28.3 allows attackers to access sensitive data and escalate privileges by obtaining the service account's token.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 27 Jun 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:projectcontour:contour:1.28.3:*:*:*:*:kubernetes:*:* |
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-02T03:37:05.278Z
Reserved: 2024-05-30T00:00:00
Link: CVE-2024-36539
Updated: 2024-07-25T15:07:05.871Z
Status : Analyzed
Published: 2024-07-24T17:15:10.767
Modified: 2025-06-27T16:50:09.070
Link: CVE-2024-36539
No data.
OpenCVE Enrichment
No data.
Weaknesses