CVE-2024-22030
Severity CVSS v4.0:
Pending analysis
Type:
CWE-295
Improper Certificate Validation
Publication date:
16/10/2024
Last modified:
16/10/2024
Description
A vulnerability has been identified within Rancher that can be exploited<br />
in narrow circumstances through a man-in-the-middle (MITM) attack. An <br />
attacker would need to have control of an expired domain or execute a <br />
DNS spoofing/hijacking attack against the domain to exploit this <br />
vulnerability. The targeted domain is the one used as the Rancher URL.
Impact
Base Score 3.x
8.00
Severity 3.x
HIGH



