CVE-2019-12303

Severity CVSS v4.0:
Pending analysis
Type:
CWE-74 Injection
Publication date:
06/06/2019
Last modified:
13/04/2022

Description

In Rancher 2 through 2.2.3, Project owners can inject additional fluentd configuration to read files or execute arbitrary commands inside the fluentd container.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:suse:rancher:*:*:*:*:*:*:*:* 2.0.0 (including) 2.2.3 (including)