CVE-2024-8260

CVSS V2 None CVSS V3 None
Description
A SMB force-authentication vulnerability exists in all versions of OPA for Windows prior to v0.68.0. The vulnerability exists because of improper input validation, allowing a user to pass an arbitrary SMB share instead of a Rego file as an argument to OPA CLI or to one of the OPA Go library’s functions.
Overview
  • CVE ID
  • CVE-2024-8260
  • Assigner
  • tenable
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-08-30T12:22:45.964Z
  • Last Modified Date
  • 2024-08-30T13:17:20.246Z
References
History
Created Old Value New Value Data Type Notes
2024-08-31 13:02:41 Added to TrackCVE