Overview

FieldValue
ID1091
NameManage Ingresses (Namespace Service Exposure/Traffic Redirection)
Risk CategoryNetworkManipulation
Risk LevelHigh
Role TypeRole
API Groupsnetworking.k8s.io
Resourcesingresses
Verbscreate, update, patch, delete
TagsDenialOfService NetworkManipulation ServiceExposure Tampering

Description

Allows creating, updating, or deleting Ingress objects within a namespace. This can be used to expose internal services to external traffic, redirect legitimate traffic to malicious endpoints, or cause denial of service by misconfiguring routing rules.