CVE-2018-1099 - CERT CVE
ID CVE-2018-1099
Sažetak DNS rebinding vulnerability found in etcd 3.3.1 and earlier. An attacker can control his DNS records to direct to localhost, and trick the browser into sending requests to localhost (or any other address).
Reference
CVSS
Base: 2.1
Impact: 2.9
Exploitability:3.9
Pristup
VektorSloženostAutentikacija
LOCAL LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL NONE
CVSS vektor AV:L/AC:L/Au:N/C:N/I:P/A:N
Zadnje važnije ažuriranje 07-11-2023 - 02:55
Objavljeno 03-04-2018 - 16:29