Kiali是一款开源的、用于Istio微服务架构的可视化管理工具。 Kiali 1.15.1之前版本中的默认配置文件存在安全漏洞,该漏洞源于该文件带有硬编码的加密密钥。远程攻击者可利用该漏洞绕过身份验证机制,获取权限来查看并修改Istio配置。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Auth Bypass PoC for Kiali | https://github.com/jpts/cve-2020-1764-poc | POC Details |
No public POC found.
Login to generate AI POCNo comments yet