Handler on Duty: Brad Duncan
Threat Level: green
| Published | 2022-06-15 22:15:13 |
|---|---|
| Last Modified | 2025-01-02 19:16:14 |
| AKA | CVE-2022-30137 |
| Summary | Executive Summary An Elevation of Privilege (EOP) vulnerability has been identified within Service Fabric clusters that run Docker containers. Exploitation of this EOP vulnerability requires an attacker to gain remote code execution within a container. All Service Fabric and Docker versions are impacted. |
| CVSS Score | 4.6 |
| Access Vector | Local | Adjacent | Network |
|---|---|---|---|
| Access Complexity | Low | Medium | High |
| Authentication | None | Single | Multiple |
| Confidentiality | None | Partial | Complete |
| Integrity | None | Partial | Complete |
| Availability | None | Partial | Complete |