Red Hat Openshift Enterprise vulnerabilities
2 known vulnerabilities affecting red_hat/openshift_enterprise.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1LOW1
Vulnerabilities
Page 1 of 1
CVE-2016-8651LOWCVSS 3.5v32018-08-01
CVE-2016-8651 [LOW] CWE-20 CVE-2016-8651: An input validation flaw was found in the way OpenShift 3 handles requests for images. A user, with
An input validation flaw was found in the way OpenShift 3 handles requests for images. A user, with a copy of the manifest associated with an image, can pull an image even if they do not have access to the image normally, resulting in the disclosure of any information contained within the image.
cvelistv5nvd
CVE-2016-8631HIGHCVSS 7.7v32018-07-31
CVE-2016-8631 [HIGH] CWE-20 CVE-2016-8631: The OpenShift Enterprise 3 router does not properly sort routes when processing newly added routes.
The OpenShift Enterprise 3 router does not properly sort routes when processing newly added routes. An attacker with access to create routes can potentially overwrite existing routes and redirect network traffic for other users to their own site.
cvelistv5nvd