Overview

FieldValue
ID1004
NameCluster-wide pod port-forward
Risk CategoryInformation Disclosure
Risk LevelHigh
Role TypeClusterRole
API Groupscore
Resourcespods/portforward
Verbscreate
TagsClusterWidePodPortForward LateralMovement NetworkManipulation

Description

Grants the ability to forward local ports to ports on any pod across the cluster. This can expose internal services, facilitate lateral movement by bypassing network policies, and lead to information disclosure from otherwise inaccessible applications.