CVE-2024-22030

Severity CVSS v4.0:
Pending analysis
Type:
CWE-295 Improper Certificate Validation
Publication date:
16/10/2024
Last modified:
16/10/2024

Description

A vulnerability has been identified within Rancher that can be exploited<br /> in narrow circumstances through a man-in-the-middle (MITM) attack. An <br /> attacker would need to have control of an expired domain or execute a <br /> DNS spoofing/hijacking attack against the domain to exploit this <br /> vulnerability. The targeted domain is the one used as the Rancher URL.