HTTP Proxy Vulnerability in IBM Cloud Private Kubernetes API Server
CVE-2019-4119
3.1LOW
What is CVE-2019-4119?
The IBM Cloud Private Kubernetes API Server versions 2.1.0 and 3.1.0 to 3.1.2 are susceptible to a vulnerability that allows them to be exploited as an HTTP proxy. This flaw can facilitate unauthorized access to both internal and external target IP addresses, potentially exposing sensitive network resources to malicious actors. It is crucial for users of these affected versions to implement immediate corrective measures to safeguard their infrastructure.
Affected Version(s)
Cloud Private 2.1.0
Cloud Private 3.1.0
Cloud Private 3.1.1