Vulnerabilities (CVE)

Filtered by vendor Suse Subscribe
Filtered by product Caas Platform
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-8030 1 Suse 1 Caas Platform 2021-02-19 3.6 LOW 4.4 MEDIUM
A Insecure Temporary File vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to leak the bootstrapToken or modify the configuration file before it is processed, leading to arbitrary modifications of the machine/cluster.
CVE-2020-8029 1 Suse 1 Caas Platform 2021-02-19 2.1 LOW 4.0 MEDIUM
A Incorrect Permission Assignment for Critical Resource vulnerability in skuba of SUSE CaaS Platform 4.5 allows local attackers to gain access to the kublet key. This issue affects: SUSE CaaS Platform 4.5 skuba versions prior to https://github.com/SUSE/skuba/pull/1416.