VYPR
Vendor

Boot2docker

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2014-5279Feb 6, 2018
    risk 0.00cvss epss 0.02

    The Docker daemon managed by boot2docker 1.2 and earlier improperly enables unauthenticated TCP connections by default, which makes it easier for remote attackers to gain privileges or execute arbitrary code from children containers.

  • CVE-2014-5280Feb 6, 2018
    risk 0.00cvss epss 0.00

    boot2docker 1.2 and earlier allows attackers to conduct cross-site request forgery (CSRF) attacks by leveraging Docker daemons enabling TCP connections without TLS authentication.