← Vulnerability feed

Vulnerability record · CVE-2020-10736 · published 22 June 2020

CVE-2020-10736: Linuxfoundation ceph improper authorization vulnerability

Linuxfoundation · Ceph

An authorization bypass vulnerability was found in Ceph versions 15.2.0 before 15.2.2, where the ceph-mon and ceph-mgr daemons do not properly restrict access, resulting in gaining access to unauthorized resources. This flaw allows an authenticated client to modify the configuration and possibly conduct further attacks.

8.0 CVSS 3.1 High EPSS 0.65% · top 51.1% CWE-285 · Improper authorization
8.0CVSS 3.1 base score, v2 5.2
0.65%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
4References
17 Jun 2026Last modified by NVD

Description

An authorization bypass vulnerability was found in Ceph versions 15.2.0 before 15.2.2, where the ceph-mon and ceph-mgr daemons do not properly restrict access, resulting in gaining access to unauthorized resources. This flaw allows an authenticated client to modify the configuration and possibly conduct further attacks.

CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2020-10736 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.1CVE-2022-0670Linuxfoundation ceph incorrect authorization vulnerabilityA flaw was found in Openstack manilla owning a Ceph File system "share", which enables the owner to read/write any manilla share or entire file syste…EPSS 1.2%7.5CVE-2020-12059Linuxfoundation ceph null pointer dereference vulnerabilityAn issue was discovered in Ceph through 13.2.9. A POST request with an invalid tagging XML can crash the RGW process by triggering a NULL pointer exc…EPSS 2.7%7.5CVE-2020-1699Linuxfoundation ceph information exposure vulnerabilityA path traversal flaw was found in the Ceph dashboard implemented in upstream versions v14.2.5, v14.2.6, v15.0.0 of Ceph storage and has been fixed i…EPSS 2.1%7.2CVE-2021-20288Linuxfoundation ceph improper authentication vulnerabilityAn authentication flaw was found in ceph in versions before 14.2.20. When the monitor handles CEPHX_GET_AUTH_SESSION_KEY requests, it doesn't sanitiz…EPSS 2.1%6.8CVE-2020-1759Redhat ceph storage vulnerabilityA vulnerability was found in Red Hat Ceph Storage 4 and Red Hat Openshift Container Storage 4.2 where, A nonce reuse vulnerability was discovered in …EPSS 1.6%6.5CVE-2020-10753Redhat ceph storage injection vulnerabilityA flaw was found in the Red Hat Ceph Storage RadosGW (Ceph Object Gateway). The vulnerability is related to the injection of HTTP headers via a CORS …EPSS 1.6%6.1CVE-2020-1760Linuxfoundation ceph cross-site scripting vulnerabilityA flaw was found in the Ceph Object Gateway, where it supports request sent by an anonymous user in Amazon S3. This flaw could lead to potential XSS …EPSS 1.6%8.8CVE-2026-58704Android Cellular Modem improper authorization allows adjacent privilege escalationAndroid's Cellular Modem component contains a logic error that bypasses permission checks, allowing an attacker within radio/adjacent range to escala…KEVEPSS 0.59%analysed

Source: NIST National Vulnerability Database (record CVE-2020-10736), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.