Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0313 | A Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in SUSE Rancher allows code execution for user with the ability to add an untrusted Helm catalog or modifying the URL configuration used to download KDM (only admin users by default) This issue affects: SUSE Rancher Rancher versions prior to 2.5.17; Rancher versions prior to 2.6.10; Rancher versions prior to 2.7.1. |
Github GHSA |
GHSA-34p5-jp77-fcrc | Command injection in Rancher Git package |
| Link | Providers |
|---|---|
| https://bugzilla.suse.com/show_bug.cgi?id=1205294 |
|
Tue, 25 Mar 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: suse
Published:
Updated: 2025-03-25T15:27:31.285Z
Reserved: 2022-10-26T00:00:00.000Z
Link: CVE-2022-43758
Updated: 2024-08-03T13:40:06.453Z
Status : Modified
Published: 2023-02-07T13:15:09.883
Modified: 2024-11-21T07:27:10.303
Link: CVE-2022-43758
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA