Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-36782

A Cleartext Storage of Sensitive Information vulnerability in SUSE Rancher allows authenticated Cluster Owners, Cluster Members, Project Owners, Project Members and User Base to use the Kubernetes API to retrieve plaintext version of sensitive data. This issue affects: SUSE Rancher Rancher versions prior to 2.5.16; Rancher versions prior to 2.6.7.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.798
EPSS Ranking 99.0%
CVSS Severity
CVSS v3 Score 9.9
Products affected by CVE-2021-36782
  • Suse » Rancher » Version: 2.5.0
    cpe:2.3:a:suse:rancher:2.5.0
  • Suse » Rancher » Version: 2.5.1
    cpe:2.3:a:suse:rancher:2.5.1
  • Suse » Rancher » Version: 2.5.10
    cpe:2.3:a:suse:rancher:2.5.10
  • Suse » Rancher » Version: 2.5.11
    cpe:2.3:a:suse:rancher:2.5.11
  • Suse » Rancher » Version: 2.5.12
    cpe:2.3:a:suse:rancher:2.5.12
  • Suse » Rancher » Version: 2.5.13
    cpe:2.3:a:suse:rancher:2.5.13
  • Suse » Rancher » Version: 2.5.2
    cpe:2.3:a:suse:rancher:2.5.2
  • Suse » Rancher » Version: 2.5.3
    cpe:2.3:a:suse:rancher:2.5.3
  • Suse » Rancher » Version: 2.5.4
    cpe:2.3:a:suse:rancher:2.5.4
  • Suse » Rancher » Version: 2.5.5
    cpe:2.3:a:suse:rancher:2.5.5
  • Suse » Rancher » Version: 2.5.6
    cpe:2.3:a:suse:rancher:2.5.6
  • Suse » Rancher » Version: 2.5.7
    cpe:2.3:a:suse:rancher:2.5.7
  • Suse » Rancher » Version: 2.5.8
    cpe:2.3:a:suse:rancher:2.5.8
  • Suse » Rancher » Version: 2.5.9
    cpe:2.3:a:suse:rancher:2.5.9
  • Suse » Rancher » Version: 2.6.0
    cpe:2.3:a:suse:rancher:2.6.0
  • Suse » Rancher » Version: 2.6.1
    cpe:2.3:a:suse:rancher:2.6.1
  • Suse » Rancher » Version: 2.6.2
    cpe:2.3:a:suse:rancher:2.6.2
  • Suse » Rancher » Version: 2.6.3
    cpe:2.3:a:suse:rancher:2.6.3
  • Suse » Rancher » Version: 2.6.4
    cpe:2.3:a:suse:rancher:2.6.4


Contact Us

Shodan ® - All rights reserved