Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Portainer 1.24.1 and earlier is affected by incorrect access control that may lead to remote arbitrary code execution. The restriction checks for bind mounts are applied only on the client-side and not the server-side, which can lead to spawning a container with bind mount. Once such a container is spawned, it can be leveraged to break out of the container leading to complete Docker host machine takeover.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Portainer 访问控制错误漏洞
Vulnerability Description
Portainer是一款用于管理Docker环境和Docker主机的轻量级用户管理界面。 Portainer 1.24.1 存在访问控制错误漏洞,导致远程任意代码执行。
CVSS Information
N/A
Vulnerability Type
N/A