Security Advisory

CVE-2024-22030

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2024-10-16 13:24:06
Last updated 2024-10-16 14:25:43
Assigner suse
CVSS score 8.0
State PUBLISHED

Description

A vulnerability has been identified within Rancher that can be exploited in narrow circumstances through a man-in-the-middle (MITM) attack. An attacker would need to have control of an expired domain or execute a DNS spoofing/hijacking attack against the domain to exploit this vulnerability. The targeted domain is the one used as the Rancher URL.