CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 7.4. Exploitation may require the attacker to be authenticated.
CVE
CVE-2022-21953
Severity
HIGH
CVSS
7.4
EPSS
0.47%
Original NVD Description
A Missing Authorization vulnerability in of SUSE Rancher allows authenticated user to create an unauthorized shell pod and kubectl access in the local cluster This issue affects: SUSE Rancher Rancher versions prior to 2.5.17; Rancher versions prior to 2.6.10; Rancher versions prior to 2.7.1.
Related CVEs
Other vulnerabilities affecting the same vendor(s)