High severity8.0NVD Advisory· Published Jun 22, 2020· Updated Jun 17, 2026
CVE-2020-10736
CVE-2020-10736
Description
An authorization bypass vulnerability was found in Ceph versions 15.2.0 before 15.2.2, where the ceph-mon and ceph-mgr daemons do not properly restrict access, resulting in gaining access to unauthorized resources. This flaw allows an authenticated client to modify the configuration and possibly conduct further attacks.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Ceph/Cephdescription
Patches
Vulnerability mechanics
References
2- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
- ceph.io/releases/v15-2-2-octopus-released/nvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.