Vulnerabilities > Hashicorp > Consul > 1.6.2

DATE CVE VULNERABILITY TITLE RISK
2020-06-11 CVE-2020-13170 Improper Input Validation vulnerability in Hashicorp Consul
HashiCorp Consul and Consul Enterprise did not appropriately enforce scope for local tokens issued by a primary data center, where replication to a secondary data center was not enabled.
network
low complexity
hashicorp CWE-20
5.0
2020-06-11 CVE-2020-12797 Incorrect Permission Assignment for Critical Resource vulnerability in Hashicorp Consul
HashiCorp Consul and Consul Enterprise failed to enforce changes to legacy ACL token rules due to non-propagation to secondary data centers.
network
low complexity
hashicorp CWE-732
5.0
2020-06-11 CVE-2020-12758 Improper Resource Shutdown or Release vulnerability in Hashicorp Consul
HashiCorp Consul and Consul Enterprise could crash when configured with an abnormally-formed service-router entry.
network
low complexity
hashicorp CWE-404
5.0