VDB

CVE-2020-1742

CVE-2020-1742 PUBLISHED CVSS 4.400000095367432 MEDIUM

Reported by redhat · Published June 7, 2021

An insecure modification vulnerability flaw was found in containers using nmstate/kubernetes-nmstate-handler. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges. Versions before kubernetes-nmstate-handler-container-v2.3.0-30 are affected.

Risk Scores

CVSS 2.0
4.400000095367432

Affected Products

VendorProductVersions
n/anmstate/kubernetes-nmstate-handlerkubernetes-nmstate-handler-container-v2.3.0-30
github.comnmstate/kubernetes-nmstate0, 0
n/anmstate/kubernetes-nmstate-handlerkubernetes-nmstate-handler-container-v2.3.0-30, *

Timeline

  • Jun 7, 2021 CVE Published
  • Jun 8, 2021 EPSS Score
  • Aug 9, 2021 EPSS Score
  • Oct 9, 2021 EPSS Score
  • Nov 23, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 9, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Apr 11, 2022 EPSS Score
  • Jun 11, 2022 EPSS Score
  • Aug 12, 2022 EPSS Score
  • Oct 12, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›