A new vulnerability, CVE-2023-5528, has been discovered with Kubernetes. This vulnerability is associated with a command injection vulnerability that leads to remote code execution with SYSTEM-level privileges on the compromised Windows node. The severity for this vulnerability has been given as 7.2 (High). Several prerequisites are required for a threat actor to exploit this vulnerability, […]
The post Kubernetes Vulnerability Let Attackers Take Full System Control appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.
Free Webinar: Mitigating Vulnerability & 0-day Threats
Alert Fatigue that helps no one as security teams need to triage 100s of vulnerabilities.
:
- The problem of vulnerability fatigue today
- Difference between CVSS-specific vulnerability vs risk-based vulnerability
- Evaluating vulnerabilities based on the business impact/risk
- Automation to reduce alert fatigue and enhance security posture significantly
AcuRisQ, that helps you to quantify risk accurately:
Source: gbHackers
Source Link: https://gbhackers.com/kubernetes-vulnerability-full-system-control/