Loading HuntDB...

CVE-2019-11248 on http://█.█.█.█:9100/debug/pprof/goroutine

Low
8
8x8
Submitted None

Team Summary

Official summary from 8x8

@mr_k0anti reported to us an exposed debugging endpoint (`/debug/pprof`) over the unauthenticated Kubelet healthz port `9100`. No sensitive information has been disclosed & the affected host belonged to our staging environment. The issue has been rectified.

Reported by mr-k0anti

Report Details

Additional information and metadata

State

Closed

Substate

Resolved

Submitted

Weakness

Information Disclosure