← voltar
CVE-2023-0845mediumCWE-476

Consul Server Panic when Ingress and API Gateways Configured with Peering

13Vexday Risk Score

Sem sinal de exploração. Nenhum artefato público de exploração conhecido até agora.

ssvc Trackcvss 4.9epss 1.0%
probabilidade de exploração
1.0%top 40% das CVEs
exploração observada
nãonenhuma fonte reporta
Consul and Consul Enterprise allowed an authenticated user with service:write permissions to trigger a workflow that causes Consul server and client agents to crash under certain circumstances. This vulnerability was fixed in Consul 1.14.5.
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H