Consul and Consul Enterprise allowed any user with service:write permissions to use Envoy extensions configured via service-defaults to patch remote proxy instances that target the configured service, regardless of whether the user has permission to modify the service(s) corresponding to those modified proxies.
                
            References
                    Configurations
                    Configuration 1 (hide)
| 
 | 
History
                    No history.
Information
                Published : 2023-06-02 23:15
Updated : 2024-11-21 07:59
NVD link : CVE-2023-2816
Mitre link : CVE-2023-2816
CVE.ORG link : CVE-2023-2816
JSON object : View
Products Affected
                hashicorp
- consul
CWE
                