Overview

FieldValue
ID1024
NameModify ConfigMaps cluster-wide
Risk CategoryTampering
Risk LevelCritical
Role TypeClusterRole
API Groupscore
Resourcesconfigmaps
Verbscreate, update, patch, delete
TagsConfigMapAccess PotentialPrivilegeEscalation Tampering

Description

Allows creating, updating, patching, or deleting ConfigMaps in any namespace. This enables an attacker to tamper with application configurations across the cluster, potentially leading to misconfigurations, denial of service, or privilege escalation if applications consume malicious configurations.