SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Kubernetes ingress-nginx controller Remote Code Execution

Category: WEB-ATTACKS      

A security issue was discovered in kubernetes ingress-nginx where the mirror-target and mirror-host Ingress annotations can be used to inject arbitrary configuration into nginx. This can lead to arbitrary code execution in the context of the ingress-nginx controller, and disclosure of Secrets accessible to the controller.


Relevant Information