Unrated severityNVD Advisory· Published Dec 17, 2021· Updated Sep 16, 2024
Unauthorized data access from replicas through vulnerable instance manager pods
CVE-2021-36780
Description
A Missing Authentication for Critical Function vulnerability in longhorn of SUSE Longhorn allows attackers to connect to a longhorn-engine replica instance granting it the ability to read and write data to and from a replica that they should not have access to. This issue affects: SUSE Longhorn longhorn versions prior to 1.1.3; longhorn versions prior to 1.2.3v.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- SUSE/Longhornv5Range: longhorn
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.