CVE Published: 14/12/2021 |
CVE Updated: 04/08/2024 |
CVE Year: 2021 Source: sap |
Vendor: SAP SE |
Product: Kyma Status : PUBLISHED
CVE-2021-38182 Description
Due to insufficient input validation of Kyma, authenticated users can pass a Header of their choice and escalate privileges which can completely compromise the cluster.