Known vulnerabilities in Red Hat OpenShift Container Platform 3.11.0 - page 7

Version: 3.11.0
Software CPE: cpe:2.3:a:red_hat:red_hat_openshift_container_platform:*:*:*:*:*:*:*:*
Total vulnerabilities: 137
Public exploits: 9
Known exploited (KEV): 2
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Red Hat OpenShift Container Platform version 3.11.0 Red Hat OpenShift Container Platform 3.11.0 is affected by 137 vulnerabilities: 1 critical, 36 high, 53 medium, 47 low Critical High Medium Low

Vulnerabilities (137)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU21437 - Cross-Site Request Forgery (CSRF)
CVE-2019-10384
CWE-352 Low
No
No
4.1.16 30.09.2019 SB2019082820
SB2019092016
SB2019083013
and 1 more
#VU21173 - Cross-Site Request Forgery (CSRF)
CVE-2019-10176
CWE-352 Medium
No
No
4.1.0 18.09.2019 SB2019091803
SB2019091804
SB2019121616
#VU21141 - Cleartext Transmission of Sensitive Information
CVE-2019-10214
CWE-319 Low
No
No
- 16.09.2019 SB2019091611
SB2019091612
SB2019091613
and 12 more
#VU21117 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-10383
CWE-79 Low
No
No
4.1.16 16.09.2019 SB2019082820
SB2019092016
SB2019083013
and 1 more
#VU30803 - Permissions, Privileges, and Access Controls
CVE-2019-11246
CWE-264 Medium
No
No
- 29.08.2019 SB2019082915
SB2019062722
SB2019062723
and 3 more
#VU19941 - Exposure of sensitive information to an unauthorized actor
CVE-2019-12086
CWE-200 Medium
No
No
- 06.08.2019 SB2019052407
SB2019092703
SB2019100116
and 30 more
#VU19933 - Permissions, Privileges, and Access Controls
CVE-2019-14379
CWE-264 High
No
No
4.6.26 05.08.2019 SB2019091307
SB2019092703
SB2019100116
and 33 more
#VU19280 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2019-10352
CWE-22 Medium
No
No
- 22.07.2019 SB2019081514
SB2019082816
#VU19279 - Cross-Site Request Forgery (CSRF)
CVE-2019-10353
CWE-352 Low
No
No
- 22.07.2019 SB2019081514
SB2019082816
#VU19268 - Authentication Bypass Using an Alternate Path or Channel
CVE-2019-10354
CWE-288 Low
No
No
- 19.07.2019 SB2019081514
SB2019082816
#VU19018 - Deserialization of Untrusted Data
CVE-2019-12384
CWE-502 High
No
No
- 04.07.2019 SB2019091218
SB2019092703
SB2019100116
and 28 more
#VU18961 - Exposure of sensitive information to an unauthorized actor
CVE-2019-12814
CWE-200 Medium
No
No
- 02.07.2019 SB2019062606
SB2019092703
SB2019100116
and 25 more
#VU31128 - Improper Link Resolution Before File Access ('Link Following')
CVE-2019-1002101
CWE-59 Low
No
No
- 01.04.2019 SB2019040109
SB2019062722
SB2019062723
and 6 more
#VU16950 - Permissions, Privileges, and Access Controls
CVE-2019-0542
CWE-264 High
No
No
- 08.01.2019 SB2019011110
SB2019061005
SB2019082201
and 1 more
#VU14827 - Improper Access Control
CVE-2018-0505
CWE-284 Low
No
No
- 21.09.2018 SB2018092102
SB2018092201
SB2019101802
and 5 more
#VU14825 - Permissions, Privileges, and Access Controls
CVE-2018-0503
CWE-264 Low
No
No
- 21.09.2018 SB2018092102
SB2018092201
SB2019101802
and 5 more
#VU11268 - Deserialization of Untrusted Data
CVE-2018-7489
CWE-502 High
No
No
- 26.03.2018 SB2018021604
SB2018041910
SB2018050306
and 28 more


Showing elements 121 - 140 out of 137