Exposure of Configuration and Secrets in Containous Traefik 1.6.x

Exposure of Configuration and Secrets in Containous Traefik 1.6.x

CVE-2018-15598 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

Containous Traefik 1.6.x before 1.6.6, when --api is used, exposes the configuration and secret if authentication is missing and the API's port is publicly reachable.

Learn more about our Api Penetration Testing.