← Späť na vyhľadávanie CVE

CVE-2026-71289

Popis

The NASA-AMMOS Asynchronous Network Management System (ANMS) reference implementation-s default docker-compose.yml publishes the amp-manager service-s REST API directly to the host network interface (port 8089, e.g. -:8089/tcp-) with cap_add: NET_ADMIN, NET_RAW, SYS_NICE, bypassing the CAM (Configuration and Access Manager) gateway that is otherwise the system-s sole authentication boundary.

CVSS 9.8EPSS 0.367%Riziko 1.01
Zobraziť zdroj
Zverejnené
2026-08-05 13:24:53
Posledná úprava
2026-08-10 12:17:31
Vektor
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H