forked from atul73cx/ast-advanced-lab
-
Notifications
You must be signed in to change notification settings - Fork 4
Open
Description
Checkmarx (SCA): Vulnerable Package
Vulnerability: Read More about CVE-2021-28235
Applications: yael's application
Checkmarx Project: Yoavast/CX-AST
Repository URL: https://github.com/Yoavast/CX-AST
Branch: main
Severity: HIGH
State: TO_VERIFY
Status: RECURRENT
Scan ID: b70b7227-90db-4075-88cb-4c196077be97
An authentication vulnerability found in Etcd-io in version 3.4.10 through 3.4.24 and v3.5.0-alpha.0 through 3.5.7 allows remote attackers to escalate privileges via the "debug" function.
Additional Info
Attack vector: NETWORK
Attack complexity: LOW
Confidentiality impact: HIGH
Availability impact: HIGH
Remediation Upgrade Recommendation: v3.5.9
Reactions are currently unavailable