A Insecure Temporary File vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to leak the bootstrapToken or modify the configuration file before it is processed, leading to arbitrary modifications of the machine/cluster.
References
Link | Resource |
---|---|
https://bugzilla.suse.com/show_bug.cgi?id=1177361 | Exploit Issue Tracking Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: suse
Published: 2020-11-23T00:00:00
Updated: 2021-02-11T16:00:20
Reserved: 2020-01-27T00:00:00
Link: CVE-2020-8030
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-02-11T16:15:12.993
Modified: 2021-02-19T16:55:19.583
Link: CVE-2020-8030
JSON object: View
Redhat Information
No data.
CWE