mirror of
https://github.com/aquasecurity/kube-hunter.git
synced 2026-08-21 21:26:23 +00:00
21 lines
597 B
Markdown
21 lines
597 B
Markdown
---
|
|
vid: KHV026
|
|
title: Arbitrary Access To Cluster Scoped Resources
|
|
categories: [PrivilegeEscalation]
|
|
---
|
|
|
|
# {{ page.vid }} - {{ page.title }}
|
|
|
|
## Issue description
|
|
|
|
Cluster is found to be vulnerable to CVE-2019-11247. Please see the Vulnerability description for additional information.
|
|
|
|
## Remediation
|
|
|
|
Please see the Vulnerability description for remediation.
|
|
|
|
## References
|
|
|
|
- [CVE-2019-11247: API server allows access to custom resources via wrong scope](https://github.com/kubernetes/kubernetes/issues/80983)
|
|
- [CVE-2019-11247](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-11247)
|