Docker Desktop 4.7.1

CPE Details

Docker Desktop 4.7.1
4.7.1
2022-07-06
14h58 +00:00
2022-07-06
15h00 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:docker:docker_desktop:4.7.1:*:*:*:*:*:*:*

Informations

Vendor

docker

Product

docker_desktop

Version

4.7.1

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-0633 2023-09-25 15h32 +00:00 In Docker Desktop on Windows before 4.12.0 an argument injection to installer may result in local privilege escalation (LPE).This issue affects Docker Desktop: before 4.12.0.
7.8
High
CVE-2023-0626 2023-09-25 15h31 +00:00 Docker Desktop before 4.12.0 is vulnerable to RCE via query parameters in message-box route. This issue affects Docker Desktop: before 4.12.0.
9.8
Critical
CVE-2023-0625 2023-09-25 15h31 +00:00 Docker Desktop before 4.12.0 is vulnerable to RCE via a crafted extension description or changelog. This issue affects Docker Desktop: before 4.12.0.
9.8
Critical
CVE-2023-5166 2023-09-25 15h30 +00:00 Docker Desktop before 4.23.0 allows Access Token theft via a crafted extension icon URL. This issue affects Docker Desktop: before 4.23.0.
8
High
CVE-2023-0628 2023-03-13 11h16 +00:00 Docker Desktop before 4.17.0 allows an attacker to execute an arbitrary command inside a Dev Environments container during initialization by tricking a user to open a crafted malicious docker-desktop:// URL.
7.8
High