CVE Published: 15/06/2022 |
CVE Updated: 10/09/2024 |
CVE Year: 2022 Source: microsoft |
Vendor: Microsoft |
Product: Service Fabric Status : PUBLISHED
CVE-2022-30137 Description
Executive Summary
An Elevation of Privilege (EOP) vulnerability has been identified within Service Fabric clusters that run Docker containers. Exploitation of this EOP vulnerability requires an attacker to gain remote code execution within a container. All Service Fabric and Docker versions are impacted.
Metrics
CVSS Version: 3.1 |
Base Score: 6.7 MEDIUM Vector: CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C