Google Kubernetes是美国谷歌(Google)公司的一套开源的Docker容器集群管理系统。该系统为容器化的应用提供资源调度、部署运行、服务发现和扩容缩容等功能。 Google Kubernetes 1.9.0版本至1.9.9版本、1.10.0版本至1.10.5版本和1.11.0版本至1.11.1版本中存在安全漏洞,该漏洞源于在Windows节点上设置卷挂载时程序以不安全的方式处理了用户输入。攻击者可利用该漏洞注入命令行参数。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Kubernetes | Kubernetes | unspecified ~ v1.9.10 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-1002103 | Minikube 跨站请求伪造漏洞 | |
| CVE-2018-1002105 | Google Kubernetes 权限许可和访问控制漏洞 |
No comments yet