Security Advisory

CVE-2021-38182

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-12-14 15:44:13
Last updated 2024-08-04 01:37:16
Assigner sap
CVSS score not scored
State PUBLISHED

Description

Due to insufficient input validation of Kyma, authenticated users can pass a Header of their choice and escalate privileges which can completely compromise the cluster.