Go modules package
github.com/cloudflare/cloudflared
pkg:golang/github.com/cloudflare/cloudflared
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2023-1314 | — | < 0.0.0-20230313153246-f686da832f85 | 0.0.0-20230313153246-f686da832f85 | Mar 21, 2023 | A vulnerability has been discovered in cloudflared's installer (<= 2023.3.0) for Windows 32-bits devices that allows a local attacker with no administrative permissions to escalate their privileges on the affected device. This vulnerability exists because the MSI installer used b | ||
| CVE-2020-24356 | — | < 0.0.0-20200820025921-9323844ea773 | 0.0.0-20200820025921-9323844ea773 | Oct 2, 2020 | `cloudflared` versions prior to 2020.8.1 contain a local privilege escalation vulnerability on Windows systems. When run on a Windows system, `cloudflared` searches for configuration files which could be abused by a malicious entity to execute commands as a privileged user. Versi |
- CVE-2023-1314Mar 21, 2023affected < 0.0.0-20230313153246-f686da832f85fixed 0.0.0-20230313153246-f686da832f85
A vulnerability has been discovered in cloudflared's installer (<= 2023.3.0) for Windows 32-bits devices that allows a local attacker with no administrative permissions to escalate their privileges on the affected device. This vulnerability exists because the MSI installer used b
- CVE-2020-24356Oct 2, 2020affected < 0.0.0-20200820025921-9323844ea773fixed 0.0.0-20200820025921-9323844ea773
`cloudflared` versions prior to 2020.8.1 contain a local privilege escalation vulnerability on Windows systems. When run on a Windows system, `cloudflared` searches for configuration files which could be abused by a malicious entity to execute commands as a privileged user. Versi