CVE-2024-58260
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/10/2025
Last modified:
02/10/2025
Description
A vulnerability has been identified within Rancher Manager where a missing server-side validation on the `.username` field in Rancher can allow users with update permissions on other User resources to cause denial of access for targeted accounts.
Impact
Base Score 3.x
7.60
Severity 3.x
HIGH



