VYPR
Medium severity6.3NVD Advisory· Published Feb 18, 2022· Updated Jun 17, 2026

CVE-2021-3948

CVE-2021-3948

Description

An incorrect default permissions vulnerability was found in the mig-controller. Due to an incorrect cluster namespaces handling an attacker may be able to migrate a malicious workload to the target cluster, impacting confidentiality, integrity, and availability of the services located on that cluster.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • cpe:2.3:a:konveyor:mig-controller:*:*:*:*:*:*:*:*
    Range: <1.5.2
  • cpe:2.3:a:redhat:migration_toolkit:1.0:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:redhat:migration_toolkit:1.0:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:migration_toolkit:1.5:*:*:*:*:containers:*:*
    • cpe:2.3:a:redhat:migration_toolkit:1.6:*:*:*:*:containers:*:*
  • mig-controller/mig-controllerdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.