CVE

CVE-2016-5392 (openshift)

CVE-2016-5392 (openshift)

The API server in Kubernetes, as used in Red Hat OpenShift Enterprise 3.2, in a multi tenant environment allows remote authenticated users with knowledge of other project names to obtain sensitive project and user information via vectors related to the watch-cache list.

Source: CVE-2016-5392 (openshift)

Exit mobile version