CVE-2025-1974

CRITICAL NUCLEI LAB

Kubernetes - RCE

Title source: llm

Description

A security issue was discovered in Kubernetes where under certain conditions, an unauthenticated attacker with access to the pod network can achieve arbitrary code execution in the context of the ingress-nginx controller. This can lead to disclosure of Secrets accessible to the controller. (Note that in the default installation, the controller can access all Secrets cluster-wide.)

Exploits (30)

exploitdb WORKING POC VERIFIED
by Likhith Appalaneni · textremotemultiple
https://www.exploit-db.com/exploits/52338
exploitdb WORKING POC
by Beatriz Fresno Naumova · textremotemultiple
https://www.exploit-db.com/exploits/52475
github WORKING POC 248 stars
by hakaioffsec · pythonpoc
https://github.com/hakaioffsec/IngressNightmare-PoC
nomisec WORKING POC 92 stars
by Esonhugh · poc
https://github.com/Esonhugh/ingressNightmare-CVE-2025-1974-exps
nomisec WORKING POC 90 stars
by sandumjacob · poc
https://github.com/sandumjacob/IngressNightmare-POCs
nomisec WORKING POC 53 stars
by yoshino-s · poc
https://github.com/yoshino-s/CVE-2025-1974
github WORKING POC 9 stars
by lufeirider · pythonpoc
https://github.com/lufeirider/IngressNightmare-PoC
nomisec WORKING POC 7 stars
by zwxxb · poc
https://github.com/zwxxb/CVE-2025-1974
nomisec WORKING POC 4 stars
by hi-unc1e · poc
https://github.com/hi-unc1e/CVE-2025-1974-poc
nomisec WORKING POC 1 stars
by I3r1h0n · poc
https://github.com/I3r1h0n/IngressNightterror
nomisec WORKING POC 1 stars
by chhhd · poc
https://github.com/chhhd/CVE-2025-1974
nomisec WORKING POC 1 stars
by Rubby2001 · poc
https://github.com/Rubby2001/CVE-2025-1974-go
nomisec WORKING POC 1 stars
by rjhaikal · poc
https://github.com/rjhaikal/POC-IngressNightmare-CVE-2025-1974
nomisec WORKING POC 1 stars
by dttuss · poc
https://github.com/dttuss/IngressNightmare-RCE-POC
nomisec WRITEUP
by zsxen · poc
https://github.com/zsxen/CVE-2025-1974
nomisec WORKING POC
by BoianEduard · poc
https://github.com/BoianEduard/CVE-2025-1974
nomisec WORKING POC
by gunyakit · poc
https://github.com/gunyakit/CVE-2025-1974-PoC-exploit
nomisec WRITEUP
by iteride · poc
https://github.com/iteride/CVE-2025-1974
nomisec WORKING POC
by BiiTts · poc
https://github.com/BiiTts/POC-IngressNightmare-CVE-2025-1974
nomisec STUB
by Armand2002 · poc
https://github.com/Armand2002/Exploit-CVE-2025-1974-Lab
github WORKING POC
by accuknox · pythonpoc
https://github.com/accuknox/CVE-PoC-Collection/tree/main/CVE-2025-1974
nomisec WORKING POC
by Rickerd12 · poc
https://github.com/Rickerd12/exploit-cve-2025-1974
nomisec SCANNER
by abrewer251 · poc
https://github.com/abrewer251/CVE-2025-1974_IngressNightmare_PoC
nomisec WORKING POC
by salt318 · poc
https://github.com/salt318/CVE-2025-1974
nomisec WORKING POC
by zulloper · poc
https://github.com/zulloper/CVE-2025-1974
nomisec SCANNER
by tuladhar · poc
https://github.com/tuladhar/ingress-nightmare
nomisec WORKING POC
by 0xBingo · poc
https://github.com/0xBingo/CVE-2025-1974
nomisec WORKING POC
by m-q-t · poc
https://github.com/m-q-t/ingressnightmare-detection-poc
nomisec STUB
by yanmarques · poc
https://github.com/yanmarques/CVE-2025-1974

Nuclei Templates (2)

Ingress-Nginx Controller - Unauthenticated Remote Code Execution
CRITICALby princechaddha
Ingress-Nginx Controller - Remote Code Execution
CRITICALVERIFIEDby iamnoooob,rootxharsh,pdresearch,UNC1739
Shodan: ssl:"ingress-nginx" port:8443

Scores

CVSS v3 9.8
EPSS 0.9025
EPSS Percentile 99.6%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Lab Environment

COMMUNITY
Community Lab
docker pull vulhub/ingress-nginx:1.9.5
docker pull rancher/k3s:v1.29.5-k3s1
+24 more repos

Details

CWE
CWE-653
Status published
Products (3)
k8s.io/ingress-nginx 0 - 1.11.5Go
kubernetes/ingress-nginx < 1.11.4
kubernetes/ingress-nginx 1.12.0
Published Mar 25, 2025
Tracked Since Feb 18, 2026