9.3
CVSSv2

CVE-2014-5280

Published: 06/02/2018 Updated: 07/11/2023
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

boot2docker 1.2 and previous versions allows malicious users to conduct cross-site request forgery (CSRF) attacks by leveraging Docker daemons enabling TCP connections without TLS authentication.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

boot2docker boot2docker

Github Repositories

Gently packaged Cross-Site exploits

xs_exploits Gently packaged Cross-Site exploits WORK IN PROGRESS Introduction "xs_exploits" is an attempt to develop a standardized format for packaging Cross-Site exploits/attacks, such as XSS, CSRF, CSWSH and similar The packaged exploits, called exploit modules, could be be used by an attack tool such as kkross The purpose of this repository is to document the pa