VUMETRIC
CYBER PORTAL
Dashboard
Security News
Latest Vulnerabilities
Browse Vulnerabilities
by Vendors
by Products
by Categories
Weekly Reports
Vulnerabilities
>
Etcd
>
Etcd
> 3.3.7
Exclude new CVEs:
DATE
CVE
VULNERABILITY TITLE
RISK
2023-05-11
CVE-2023-32082
Unspecified vulnerability in Etcd
etcd is a distributed key-value store for the data of a distributed system.
network
low complexity
etcd
4.3
4.3
2020-08-05
CVE-2020-15113
In etcd before versions 3.3.23 and 3.4.10, certain directory paths are created (etcd data directory and the directory path when provided to automatically generate self-signed certificates for TLS connections with clients) with restricted access permissions (700) by using the os.MkdirAll.
local
low complexity
etcd
fedoraproject
7.1
7.1
2020-08-05
CVE-2020-15112
Improper Validation of Array Index vulnerability in multiple products
In etcd before versions 3.3.23 and 3.4.10, it is possible to have an entry index greater then the number of entries in the ReadAll method in wal/wal.go.
network
low complexity
etcd
fedoraproject
CWE-129
6.5
6.5
2020-08-05
CVE-2020-15106
In etcd before versions 3.3.23 and 3.4.10, a large slice causes panic in decodeRecord method.
network
low complexity
etcd
fedoraproject
6.5
6.5
2019-01-14
CVE-2018-16886
Improper Authentication vulnerability in multiple products
etcd versions 3.2.x before 3.2.26 and 3.3.x before 3.3.11 are vulnerable to an improper authentication issue when role-based access control (RBAC) is used and client-cert-auth is enabled.
network
high complexity
etcd
redhat
fedoraproject
CWE-287
8.1
8.1