Kubernetes ingress-nginx是云原生计算基金会(Cloud Native Computing Foundation)的Kubernetes 的入口控制器,使用NGINX作为反向代理和负载均衡器。 Kubernetes ingress-nginx 存在安全漏洞。攻击者利用该漏洞可以获取ingress-nginx控制器的凭证。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Kubernetes | Kubernetes ingress-nginx | unspecified ~ 1.2.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-1174 | 9.8 CRITICAL | [minikube] Network Port exposure in minikube running on macOS using Docker driver |
| CVE-2023-1944 | 8.4 HIGH | [minikube] ssh server with default password |
| CVE-2021-25749 | 7.8 HIGH | runAsNonRoot logic bypass for Windows containers |
No comments yet