Vulnerability Details CVE-2022-43756
A Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection') vulnerability in SUSE Rancher allows remote attackers to cause denial of service by supplying specially crafted git credentials. This issue affects: SUSE Rancher wrangler version 0.7.3 and prior versions; wrangler version 0.8.4 and prior versions; wrangler version 1.0.0 and prior versions.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 53.1%
CVSS Severity
CVSS v3 Score 5.9
Products affected by CVE-2022-43756
-
cpe:2.3:a:suse:wrangler:-
-
cpe:2.3:a:suse:wrangler:0.1.0
-
cpe:2.3:a:suse:wrangler:0.1.1
-
cpe:2.3:a:suse:wrangler:0.1.2
-
cpe:2.3:a:suse:wrangler:0.1.3
-
cpe:2.3:a:suse:wrangler:0.1.4
-
cpe:2.3:a:suse:wrangler:0.1.5
-
cpe:2.3:a:suse:wrangler:0.1.6
-
cpe:2.3:a:suse:wrangler:0.2.0
-
cpe:2.3:a:suse:wrangler:0.3.0
-
cpe:2.3:a:suse:wrangler:0.3.1
-
cpe:2.3:a:suse:wrangler:0.4.0
-
cpe:2.3:a:suse:wrangler:0.4.1
-
cpe:2.3:a:suse:wrangler:0.5.0
-
cpe:2.3:a:suse:wrangler:0.5.1
-
cpe:2.3:a:suse:wrangler:0.5.2
-
cpe:2.3:a:suse:wrangler:0.5.3
-
cpe:2.3:a:suse:wrangler:0.6.0
-
cpe:2.3:a:suse:wrangler:0.6.1
-
cpe:2.3:a:suse:wrangler:0.6.2
-
cpe:2.3:a:suse:wrangler:0.7.0
-
cpe:2.3:a:suse:wrangler:0.7.1
-
cpe:2.3:a:suse:wrangler:0.7.2
-
cpe:2.3:a:suse:wrangler:0.8.0
-
cpe:2.3:a:suse:wrangler:0.8.1
-
cpe:2.3:a:suse:wrangler:0.8.2
-
cpe:2.3:a:suse:wrangler:0.8.3
-
cpe:2.3:a:suse:wrangler:0.8.4
-
cpe:2.3:a:suse:wrangler:1.0.0