Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-10689

A flaw was found in the Eclipse Che up to version 7.8.x, where it did not properly restrict access to workspace pods. An authenticated user can exploit this flaw to bypass JWT proxy and gain access to the workspace pods of another user. Successful exploitation requires knowledge of the service name and namespace of the target pod.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 24.3%
CVSS Severity
CVSS v3 Score 6.4
CVSS v2 Score 4.9
Products affected by CVE-2020-10689
  • Eclipse » Che » Version: 4.0.0
    cpe:2.3:a:eclipse:che:4.0.0
  • Eclipse » Che » Version: 4.0.1
    cpe:2.3:a:eclipse:che:4.0.1
  • Eclipse » Che » Version: 4.1.0
    cpe:2.3:a:eclipse:che:4.1.0
  • Eclipse » Che » Version: 4.1.1
    cpe:2.3:a:eclipse:che:4.1.1
  • Eclipse » Che » Version: 4.2.0
    cpe:2.3:a:eclipse:che:4.2.0
  • Eclipse » Che » Version: 4.2.1
    cpe:2.3:a:eclipse:che:4.2.1
  • Eclipse » Che » Version: 4.2.2
    cpe:2.3:a:eclipse:che:4.2.2
  • Eclipse » Che » Version: 4.2.3
    cpe:2.3:a:eclipse:che:4.2.3
  • Eclipse » Che » Version: 4.3.0
    cpe:2.3:a:eclipse:che:4.3.0
  • Eclipse » Che » Version: 4.3.1
    cpe:2.3:a:eclipse:che:4.3.1
  • Eclipse » Che » Version: 4.3.2
    cpe:2.3:a:eclipse:che:4.3.2
  • Eclipse » Che » Version: 4.3.3
    cpe:2.3:a:eclipse:che:4.3.3
  • Eclipse » Che » Version: 4.3.4
    cpe:2.3:a:eclipse:che:4.3.4
  • Eclipse » Che » Version: 4.3.5
    cpe:2.3:a:eclipse:che:4.3.5
  • Eclipse » Che » Version: 4.4.0
    cpe:2.3:a:eclipse:che:4.4.0
  • Eclipse » Che » Version: 4.4.1
    cpe:2.3:a:eclipse:che:4.4.1
  • Eclipse » Che » Version: 4.4.2
    cpe:2.3:a:eclipse:che:4.4.2
  • Eclipse » Che » Version: 4.5.0
    cpe:2.3:a:eclipse:che:4.5.0
  • Eclipse » Che » Version: 4.5.1
    cpe:2.3:a:eclipse:che:4.5.1
  • Eclipse » Che » Version: 4.6.0
    cpe:2.3:a:eclipse:che:4.6.0
  • Eclipse » Che » Version: 4.6.1
    cpe:2.3:a:eclipse:che:4.6.1
  • Eclipse » Che » Version: 4.6.2
    cpe:2.3:a:eclipse:che:4.6.2
  • Eclipse » Che » Version: 4.7.0
    cpe:2.3:a:eclipse:che:4.7.0
  • Eclipse » Che » Version: 4.7.1
    cpe:2.3:a:eclipse:che:4.7.1
  • Eclipse » Che » Version: 4.7.2
    cpe:2.3:a:eclipse:che:4.7.2
  • Eclipse » Che » Version: 5.0.0
    cpe:2.3:a:eclipse:che:5.0.0
  • Eclipse » Che » Version: 5.0.1
    cpe:2.3:a:eclipse:che:5.0.1
  • Eclipse » Che » Version: 5.1.0
    cpe:2.3:a:eclipse:che:5.1.0
  • Eclipse » Che » Version: 5.1.1
    cpe:2.3:a:eclipse:che:5.1.1
  • Eclipse » Che » Version: 5.1.2
    cpe:2.3:a:eclipse:che:5.1.2
  • Eclipse » Che » Version: 5.10.0
    cpe:2.3:a:eclipse:che:5.10.0
  • Eclipse » Che » Version: 5.11.0
    cpe:2.3:a:eclipse:che:5.11.0
  • Eclipse » Che » Version: 5.11.1
    cpe:2.3:a:eclipse:che:5.11.1
  • Eclipse » Che » Version: 5.11.2
    cpe:2.3:a:eclipse:che:5.11.2
  • Eclipse » Che » Version: 5.12.0
    cpe:2.3:a:eclipse:che:5.12.0
  • Eclipse » Che » Version: 5.13.0
    cpe:2.3:a:eclipse:che:5.13.0
  • Eclipse » Che » Version: 5.14.0
    cpe:2.3:a:eclipse:che:5.14.0
  • Eclipse » Che » Version: 5.15.0
    cpe:2.3:a:eclipse:che:5.15.0
  • Eclipse » Che » Version: 5.16.0
    cpe:2.3:a:eclipse:che:5.16.0
  • Eclipse » Che » Version: 5.17.0
    cpe:2.3:a:eclipse:che:5.17.0
  • Eclipse » Che » Version: 5.18.0
    cpe:2.3:a:eclipse:che:5.18.0
  • Eclipse » Che » Version: 5.18.1
    cpe:2.3:a:eclipse:che:5.18.1
  • Eclipse » Che » Version: 5.19.0
    cpe:2.3:a:eclipse:che:5.19.0
  • Eclipse » Che » Version: 5.2.0
    cpe:2.3:a:eclipse:che:5.2.0
  • Eclipse » Che » Version: 5.2.1
    cpe:2.3:a:eclipse:che:5.2.1
  • Eclipse » Che » Version: 5.2.2
    cpe:2.3:a:eclipse:che:5.2.2
  • Eclipse » Che » Version: 5.20.0
    cpe:2.3:a:eclipse:che:5.20.0
  • Eclipse » Che » Version: 5.20.1
    cpe:2.3:a:eclipse:che:5.20.1
  • Eclipse » Che » Version: 5.21.0
    cpe:2.3:a:eclipse:che:5.21.0
  • Eclipse » Che » Version: 5.21.1
    cpe:2.3:a:eclipse:che:5.21.1
  • Eclipse » Che » Version: 5.22.0
    cpe:2.3:a:eclipse:che:5.22.0
  • Eclipse » Che » Version: 5.22.1
    cpe:2.3:a:eclipse:che:5.22.1
  • Eclipse » Che » Version: 5.22.2
    cpe:2.3:a:eclipse:che:5.22.2
  • Eclipse » Che » Version: 5.3.0
    cpe:2.3:a:eclipse:che:5.3.0
  • Eclipse » Che » Version: 5.3.1
    cpe:2.3:a:eclipse:che:5.3.1
  • Eclipse » Che » Version: 5.4.0
    cpe:2.3:a:eclipse:che:5.4.0
  • Eclipse » Che » Version: 5.4.1
    cpe:2.3:a:eclipse:che:5.4.1
  • Eclipse » Che » Version: 5.5.0
    cpe:2.3:a:eclipse:che:5.5.0
  • Eclipse » Che » Version: 5.6.0
    cpe:2.3:a:eclipse:che:5.6.0
  • Eclipse » Che » Version: 5.7.0
    cpe:2.3:a:eclipse:che:5.7.0
  • Eclipse » Che » Version: 5.7.1
    cpe:2.3:a:eclipse:che:5.7.1
  • Eclipse » Che » Version: 5.7.2
    cpe:2.3:a:eclipse:che:5.7.2
  • Eclipse » Che » Version: 5.8.0
    cpe:2.3:a:eclipse:che:5.8.0
  • Eclipse » Che » Version: 5.8.1
    cpe:2.3:a:eclipse:che:5.8.1
  • Eclipse » Che » Version: 5.9.0
    cpe:2.3:a:eclipse:che:5.9.0
  • Eclipse » Che » Version: 5.9.1
    cpe:2.3:a:eclipse:che:5.9.1
  • Eclipse » Che » Version: 6.0.0
    cpe:2.3:a:eclipse:che:6.0.0
  • Eclipse » Che » Version: 6.1.0
    cpe:2.3:a:eclipse:che:6.1.0
  • Eclipse » Che » Version: 6.1.1
    cpe:2.3:a:eclipse:che:6.1.1
  • Eclipse » Che » Version: 6.10.0
    cpe:2.3:a:eclipse:che:6.10.0
  • Eclipse » Che » Version: 6.11.0
    cpe:2.3:a:eclipse:che:6.11.0
  • Eclipse » Che » Version: 6.11.1
    cpe:2.3:a:eclipse:che:6.11.1
  • Eclipse » Che » Version: 6.12.0
    cpe:2.3:a:eclipse:che:6.12.0
  • Eclipse » Che » Version: 6.12.1
    cpe:2.3:a:eclipse:che:6.12.1
  • Eclipse » Che » Version: 6.12.2
    cpe:2.3:a:eclipse:che:6.12.2
  • Eclipse » Che » Version: 6.13.0
    cpe:2.3:a:eclipse:che:6.13.0
  • Eclipse » Che » Version: 6.13.1
    cpe:2.3:a:eclipse:che:6.13.1
  • Eclipse » Che » Version: 6.14.0
    cpe:2.3:a:eclipse:che:6.14.0
  • Eclipse » Che » Version: 6.14.1
    cpe:2.3:a:eclipse:che:6.14.1
  • Eclipse » Che » Version: 6.14.2
    cpe:2.3:a:eclipse:che:6.14.2
  • Eclipse » Che » Version: 6.15.0
    cpe:2.3:a:eclipse:che:6.15.0
  • Eclipse » Che » Version: 6.16.0
    cpe:2.3:a:eclipse:che:6.16.0
  • Eclipse » Che » Version: 6.17.0
    cpe:2.3:a:eclipse:che:6.17.0
  • Eclipse » Che » Version: 6.17.1
    cpe:2.3:a:eclipse:che:6.17.1
  • Eclipse » Che » Version: 6.18.0
    cpe:2.3:a:eclipse:che:6.18.0
  • Eclipse » Che » Version: 6.18.1
    cpe:2.3:a:eclipse:che:6.18.1
  • Eclipse » Che » Version: 6.18.2
    cpe:2.3:a:eclipse:che:6.18.2
  • Eclipse » Che » Version: 6.19.0
    cpe:2.3:a:eclipse:che:6.19.0
  • Eclipse » Che » Version: 6.19.1
    cpe:2.3:a:eclipse:che:6.19.1
  • Eclipse » Che » Version: 6.19.2
    cpe:2.3:a:eclipse:che:6.19.2
  • Eclipse » Che » Version: 6.19.3
    cpe:2.3:a:eclipse:che:6.19.3
  • Eclipse » Che » Version: 6.19.4
    cpe:2.3:a:eclipse:che:6.19.4
  • Eclipse » Che » Version: 6.19.5
    cpe:2.3:a:eclipse:che:6.19.5
  • Eclipse » Che » Version: 6.19.6
    cpe:2.3:a:eclipse:che:6.19.6
  • Eclipse » Che » Version: 6.2.0
    cpe:2.3:a:eclipse:che:6.2.0
  • Eclipse » Che » Version: 6.3.0
    cpe:2.3:a:eclipse:che:6.3.0
  • Eclipse » Che » Version: 6.4.0
    cpe:2.3:a:eclipse:che:6.4.0
  • Eclipse » Che » Version: 6.4.1
    cpe:2.3:a:eclipse:che:6.4.1
  • Eclipse » Che » Version: 6.5.0
    cpe:2.3:a:eclipse:che:6.5.0
  • Eclipse » Che » Version: 6.5.1
    cpe:2.3:a:eclipse:che:6.5.1
  • Eclipse » Che » Version: 6.5.2
    cpe:2.3:a:eclipse:che:6.5.2
  • Eclipse » Che » Version: 6.5.3
    cpe:2.3:a:eclipse:che:6.5.3
  • Eclipse » Che » Version: 6.6.0
    cpe:2.3:a:eclipse:che:6.6.0
  • Eclipse » Che » Version: 6.6.1
    cpe:2.3:a:eclipse:che:6.6.1
  • Eclipse » Che » Version: 6.6.2
    cpe:2.3:a:eclipse:che:6.6.2
  • Eclipse » Che » Version: 6.7.0
    cpe:2.3:a:eclipse:che:6.7.0
  • Eclipse » Che » Version: 6.7.1
    cpe:2.3:a:eclipse:che:6.7.1
  • Eclipse » Che » Version: 6.8.0
    cpe:2.3:a:eclipse:che:6.8.0
  • Eclipse » Che » Version: 6.9.0
    cpe:2.3:a:eclipse:che:6.9.0
  • Eclipse » Che » Version: 7.0.0
    cpe:2.3:a:eclipse:che:7.0.0
  • Eclipse » Che » Version: 7.1.0
    cpe:2.3:a:eclipse:che:7.1.0
  • Eclipse » Che » Version: 7.2.0
    cpe:2.3:a:eclipse:che:7.2.0
  • Eclipse » Che » Version: 7.3.0
    cpe:2.3:a:eclipse:che:7.3.0
  • Eclipse » Che » Version: 7.3.1
    cpe:2.3:a:eclipse:che:7.3.1
  • Eclipse » Che » Version: 7.3.2
    cpe:2.3:a:eclipse:che:7.3.2
  • Eclipse » Che » Version: 7.3.3
    cpe:2.3:a:eclipse:che:7.3.3
  • Eclipse » Che » Version: 7.4.0
    cpe:2.3:a:eclipse:che:7.4.0
  • Eclipse » Che » Version: 7.5.0
    cpe:2.3:a:eclipse:che:7.5.0
  • Eclipse » Che » Version: 7.5.1
    cpe:2.3:a:eclipse:che:7.5.1
  • Eclipse » Che » Version: 7.6.0
    cpe:2.3:a:eclipse:che:7.6.0
  • Eclipse » Che » Version: 7.7.0
    cpe:2.3:a:eclipse:che:7.7.0
  • Eclipse » Che » Version: 7.7.1
    cpe:2.3:a:eclipse:che:7.7.1
  • Eclipse » Che » Version: 7.8.0
    cpe:2.3:a:eclipse:che:7.8.0


Contact Us

Shodan ® - All rights reserved