Unauthenticated access to cloudtoken daemon on Linux via network from version 0.1.1 before version 0.1.24 allows attackers on the same subnet to gain temporary AWS credentials for the users roles.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Cloudtoken | Atlassian | 0.1.1 (including) | 0.1.24 (excluding) |