← Vulnerability feed

Vulnerability record · CVE-2020-1742 · published 7 June 2021

CVE-2020-1742: Kubernetes-nmstate incorrect permission assignment vulnerability

Nmstate · Kubernetes Nmstate

An insecure modification vulnerability flaw was found in containers using nmstate/kubernetes-nmstate-handler. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges. Versions before kubernetes-nmstate-handler-container-v2.3.0-30 are affected.

7.0 CVSS 3.1 High EPSS 0.26% · top 84.5% CWE-266 · CWE-266CWE-732 · Incorrect permission assignment
7.0CVSS 3.1 base score, v2 4.4
0.26%EPSS exploitation probability, 30 days
NoNot in CISA KEV
2Affected product versions listed by NVD
2References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

An insecure modification vulnerability flaw was found in containers using nmstate/kubernetes-nmstate-handler. An attacker with access to the container could use this flaw to modify /etc/passwd and escalate their privileges. Versions before kubernetes-nmstate-handler-container-v2.3.0-30 are affected.

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

2 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://bugzilla.redhat.com/show_bug.cgi?id=1803608 ExploitIssue TrackingThird Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1803608 ExploitIssue TrackingThird Party Advisory

Track CVE-2020-1742 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

7.5CVE-2023-44487HTTP/2 Rapid Reset stream cancellation denial of serviceThe HTTP/2 protocol permits a client to cancel many streams quickly, and the server's handling of those resets consumes disproportionate resources. T…KEVEPSS 100%analysed9.9CVE-2020-14316Kubevirt vulnerabilityA flaw was found in kubevirt 0.29 and earlier. Virtual Machine Instances (VMIs) can be used to gain access to the host's filesystem. Successful explo…EPSS 1.6%7.7CVE-2026-44495Axios code injection vulnerabilityAxios is a promise based HTTP client for the browser and Node.js. From 0.19.0 to before 0.31.1 and 1.15.2, Axios contains prototype-pollution gadgets…EPSS 1.0%7.3CVE-2026-13201Kubevirt vulnerabilityA flaw was found in KubeVirt's safepath package used by virt-handler. The OpenAtNoFollow function uses O_PATH|O_NOFOLLOW to obtain a file descriptor …EPSS 0.27%6.5CVE-2026-13208Kubevirt improper authentication vulnerabilityA flaw was found in KubeVirt's virt-handler domain notify server. The gRPC handlers for HandleDomainEvent and HandleK8SEvent derive the VMI identity …EPSS 0.13%6.4CVE-2026-13318Kubevirt server-side request forgery (ssrf) vulnerabilityA server-side request forgery (SSRF) flaw was found in KubeVirt's virt-api port-forward handler. When processing a port-forward request to a VirtualM…EPSS 0.24%5.9CVE-2023-48795SSH Terrapin attack downgrades channel integrity in OpenSSH and many SSH implementationsThe SSH transport protocol with certain OpenSSH extensions mishandles the handshake and sequence numbers, letting a remote attacker omit packets from…EPSS 93%analysed4.9CVE-2026-13434Kubevirt improper input validation vulnerabilityA flaw was found in KubeVirt's network annotation generator. When a tenant creates a VirtualMachineInstance with a Multus network configuration, the …EPSS 0.24%

Source: NIST National Vulnerability Database (record CVE-2020-1742), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.