Improper limitation of a pathname to a restricted directory ('path traversal') in Microsoft Azure Kubernetes Service allows an authorized attacker to execute code locally.
| Vendor | Product | Versions |
|---|---|---|
| microsoft | azure_kubernetes_service | 1.0 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| microsoft | azure | cert_advisory | 90% |
| microsoft | azure stack | cert_advisory | 90% |
Marked exploit as available and actively exploited, and added new CVE tags.
Initial creation