Impact
The cluster-proxy-addon component of Red Hat Multicluster Engine for Kubernetes contains a flaw that allows an unauthenticated attacker to bypass authentication and authorization checks. This flaw is classified as CWE-918 (Server Side Request Forgery). By manipulating URL path segments in requests sent to the public user-facing Route, the attacker can proxy traffic to arbitrary services exposed within any managed cluster. This can lead to information disclosure or further compromise of cluster resources.
Affected Systems
Affected installations are those running Red Hat Multicluster Engine for Kubernetes. No specific product versions have been disclosed.
Risk and Exploitability
The flaw is rated CVSS 9.3, indicating a high severity. No EPSS score is available and it is not listed in the CISA KEV catalog, so current exploit probability is unknown. The likely attack vector involves sending a crafted request to the exposed cluster-proxy-addon Route from an external network. If a successful SSRF is executed, the attacker gains unauthorized access to internal cluster services, potentially leading to data exposure and further lateral movement.
OpenCVE Enrichment