在 Red Hat OpenShift (OCP) 上部署时,Portworx Operator 存在一个权限提升问题。仅在初始配置 Portworx 存储集群的特定条件下,仅拥有受限的、命名空间作用域权限的用户可能会导致 Operator 授予比预期更广泛的访问权限,从而可能导致 Kubernetes 集群中的权限被提升。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Everpure | Portworx Operator | ≤ 26.3.1 |
affected |
26.3.2 + |
unaffected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Everpure | Portworx Operator | 0 ~ 26.3.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet