Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
HashiCorp Nomad and Nomad Enterprise 0.9.2 through 1.0.17, 1.1.11, and 1.2.5 allow operators with read-fs and alloc-exec (or job-submit) capabilities to read arbitrary files on the host filesystem as root.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Hashicorp Nomad 路径遍历漏洞
Vulnerability Description
Hashicorp Nomad是美国Hashicorp公司的一款分布式、数据中心感知的集群和应用程序调度程序。该程序支持部署微服务、批处理、容器化和非容器化应用程序。 HashiCorp Nomad 存在路径遍历漏洞,该漏洞源于处理目录遍历序列时的输入验证错误。远程身份验证的攻击者可以发送特制的 HTTP 请求并读取系统上的任意文件。该漏洞允许远程攻击者执行目录遍历攻击。
CVSS Information
N/A
Vulnerability Type
N/A