THREATOPS
THREAT OPSThreat News › [NVD] CVE-2024-5042 (MEDIUM 6.6) — A flaw was found in the Submariner project. Due to unnecessary role-based access control permissions, a privileged attacker can run a malicious container on a node that may allow them to steal service account tokens and further compromise other nodes and potentially the entire cl

[NVD] CVE-2024-5042 (MEDIUM 6.6) — A flaw was found in the Submariner project. Due to unnecessary role-based access control permissions, a privileged attacker can run a malicious container on a node that may allow them to steal service account tokens and further compromise other nodes and potentially the entire cl

lownvdPublished 2024-05-17

CVE-2024-5042 CVSS: 6.6 MEDIUM Published: 2024-05-17T14:15:21.123

A flaw was found in the Submariner project. Due to unnecessary role-based access control permissions, a privileged attacker can run a malicious container on a node that may allow them to steal service account tokens and further compromise other nodes and potentially the entire cluster.

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2024-5042