gcloud 漏洞列表
共找到 200 个与 gcloud 相关的漏洞
📅 加载漏洞趋势中...
- POC 2025-08-01gcloud-api-key-restrictions-missing: Missing API Key API Restrictions
- POC 2025-08-01gcloud-api-key-unrestricted: Unrestricted API Key Usage
- POC 2025-08-01gcloud-api-keys-inactive-services: API Keys Should Only Exist for Active Services
- POC 2025-08-01gcloud-critical-service-apis-disabled: Critical Service APIs Not Enabled
- POC 2025-08-01gcloud-security-center-api-disabled: Security Command Center API Disabled
- POC 2025-08-01gcloud-cloud-asset-disabled: Cloud Asset Inventory Not Enabled
- POC 2025-08-01gcloud-artifact-registry-public: Publicly Accessible Artifact Registry Repositories
- POC 2025-08-01gcloud-vuln-scan-missing: Artifact Registry Vulnerability Scanning Not Enabled
- POC 2025-08-01gcloud-bigquery-cmek-not-enabled: BigQuery Dataset Encryption with Customer-Managed Encryption Keys Not Enabled
- POC 2025-08-01gcloud-bigquery-cmk-not-enabled: BigQuery Datasets Not Encrypted with Customer-Managed Keys
- POC 2025-08-01gcloud-bigquery-public-datasets: Publicly Accessible BigQuery Datasets
- POC 2025-08-01gcloud-backend-bucket-missing-storage: Backend Buckets Referencing Missing Storage Buckets
- POC 2025-08-01gcloud-cdn-backend-bucket: Check Cloud CDN Backend Bucket Configuration
- POC 2025-08-01gcloud-cdn-ssl-enforcement: Cloud CDN SSL/TLS Not Enforced
- POC 2025-08-01gcloud-cdn-tls-unenforced: Unenforced SSL/TLS on Cloud CDN Backend Service Origins
- POC 2025-08-01gcloud-certificate-validity-exceeded: Exceeded SSL Certificate Validity Period
- POC 2025-08-01gcloud-disk-image-public-access: Disk Images Publicly Shared
- POC 2025-08-01gcloud-instance-group-autohealing-disabled: Instance Group Autohealing Not Enabled
- POC 2025-08-01gcloud-mig-no-load-balancer: Managed Instance Group Not Using Load Balancer
- POC 2025-08-01gcloud-mig-single-zone: Managed Instance Group Not Configured for Multiple Zones
- POC 2025-08-01gcloud-oslogin-disabled: OS Login Not Enabled for GCP Projects
- POC 2025-08-01gcloud-persistent-disks-suspended-vms: Persistent Disks Attached to Suspended Virtual Machines
- POC 2025-08-01gcloud-vm-automatic-restart-disabled: VM Instance Automatic Restart Not Enabled
- POC 2025-08-01gcloud-vm-confidential-computing-disabled: VM Instance Confidential Computing Not Enabled
- POC 2025-08-01gcloud-vm-default-service-account-full-access: VM Instance Using Default Service Account with Full API Access
- POC 2025-08-01gcloud-vm-default-service-account: VM Instance Using Default Service Account
- POC 2025-08-01gcloud-vm-deletion-protection-disabled: VM Instance Deletion Protection Not Enabled
- POC 2025-08-01gcloud-vm-disk-autodelete-enabled: Auto-Delete Not Disabled for VM Instance Persistent Disks
- POC 2025-08-01gcloud-vm-disk-cmk-not-enabled: Virtual Machine Disk Encryption with Customer-Managed Keys Not Enabled
- POC 2025-08-01gcloud-vm-disk-csek-disabled: VM Disk Encryption with Customer-Supplied Keys Disabled
- POC 2025-08-01gcloud-vm-disk-csek-not-enabled: Virtual Machine Disk Encryption with Customer-Supplied Keys Not Enabled
- POC 2025-08-01gcloud-vm-ip-forwarding-enabled: IP Forwarding Not Disabled for VM Instances
- POC 2025-08-01gcloud-vm-maintenance-terminate: VM Instance Maintenance Policy Set to Terminate
- POC 2025-08-01gcloud-vm-oslogin-2fa-disabled: OS Login with 2FA Authentication Not Enabled for VM Instances
- POC 2025-08-01gcloud-vm-preemptible-enabled: VM Instance Preemptibility Not Disabled
- POC 2025-08-01gcloud-vm-project-ssh-keys-enabled: Block Project-Wide SSH Keys Not Enabled
- POC 2025-08-01gcloud-vm-public-ip-enabled: VM Instance Using Public IP Address
- POC 2025-08-01gcloud-vm-serial-console-enabled: Interactive Serial Console Support Not Disabled
- POC 2025-08-01gcloud-vm-shielded-disabled: Shielded VM Security Features Not Enabled
- POC 2025-08-01gcloud-dataproc-no-cmk: Dataproc Cluster Not Using Customer-Managed Keys
- POC 2025-08-01gcloud-dataproc-public-access: Dataproc Cluster Publicly Accessible
- POC 2025-08-01gcloud-dns-dangling-records: Dangling DNS Records Check
- POC 2025-08-01gcloud-dnssec-keysigning-rsasha1: DNSSEC RSASHA1 Algorithm Deprecated Usage
- POC 2025-08-01gcloud-dnssec-rsasha1-deprecated: DNSSEC RSASHA1 Algorithm Deprecated
- POC 2025-08-01gcloud-filestore-deletion-protection-disabled: Filestore Instance Deletion Protection Not Enabled
- POC 2025-08-01gcloud-filestore-no-backups: Filestore Instance Not Using On-Demand Backup
- POC 2025-08-01gcloud-filestore-no-cmek: Filestore Instance Not Using Customer-Managed Encryption Keys
- POC 2025-08-01gcloud-filestore-no-vpc-controls: Filestore Instance Not Protected by VPC Service Controls
- POC 2025-08-01gcloud-filestore-unrestricted-access: Filestore Instance Client Access Not Restricted by IP
- POC 2025-08-01gcloud-func-cmek-not-used: No Customer-Managed Encryption Keys in Google Cloud Functions
- POC 2025-08-01gcloud-func-min-instances-unset: Unset Minimum Instances for Cloud Functions
- POC 2025-08-01gcloud-func-missing-labels: Missing User-Defined Labels in Google Cloud Functions
- POC 2025-08-01gcloud-func-pubsub-dlt-missing: Configure Dead Lettering for Pub/Sub-Triggered Functions
- POC 2025-08-01gcloud-func-secrets-unmanaged: Use Secrets Manager for Managing Secrets in Google Cloud Functions
- POC 2025-08-01gcloud-func-unrestricted-outbound: Unrestricted Outbound Network Access in Google Cloud Functions
- POC 2025-08-01gcloud-gke-auto-repair-disabled: GKE Node Pools Without Auto-Repair Enabled
- POC 2025-08-01gcloud-gke-auto-upgrade-disabled: GKE Node Pools Without Auto-Upgrade Enabled
- POC 2025-08-01gcloud-gke-backups-disabled: GKE Clusters Without Backups Enabled
- POC 2025-08-01gcloud-gke-binary-authorization-disabled: GKE Clusters Without Binary Authorization Enabled
- POC 2025-08-01gcloud-gke-client-certificate-enabled: GKE Clusters With Client Certificate Authentication Enabled
- POC 2025-08-01gcloud-gke-confidential-nodes-disabled: GKE Clusters Not Using Confidential Nodes
- POC 2025-08-01gcloud-gke-cos-containerd-disabled: GKE Clusters Not Using Container-Optimized OS
- POC 2025-08-01gcloud-gke-cost-allocation-disabled: GKE Clusters Without Cost Allocation Enabled
- POC 2025-08-01gcloud-gke-default-service-account: GKE Clusters Using Default Service Account
- POC 2025-08-01gcloud-gke-integrity-monitoring-disabled: GKE Node Pools Without Integrity Monitoring
- POC 2025-08-01gcloud-gke-intranode-visibility-disabled: GKE Clusters Without Intranode Visibility Enabled
- POC 2025-08-01gcloud-gke-labels-missing: GKE Clusters Missing Resource Labels
- POC 2025-08-01gcloud-gke-logging-disabled: GKE Clusters Without Cloud Logging Enabled
- POC 2025-08-01gcloud-gke-metadata-server-disabled: GKE Clusters Without Metadata Server Enabled
- POC 2025-08-01gcloud-gke-monitoring-disabled: GKE Clusters Without Cloud Monitoring Enabled
- POC 2025-08-01gcloud-gke-notifications-disabled: GKE Clusters Without Critical Notifications Enabled
- POC 2025-08-01gcloud-gke-private-nodes-disabled: GKE Clusters Without Private Nodes Enabled
- POC 2025-08-01gcloud-gke-public-endpoint-enabled: GKE Clusters with Public Control Plane Endpoints
- POC 2025-08-01gcloud-gke-release-channel-disabled: GKE Clusters Without Release Channel Configuration
- POC 2025-08-01gcloud-gke-sandbox-disabled: GKE Cluster Not Using Sandbox with gVisor
- POC 2025-08-01gcloud-gke-secrets-encryption-disabled: GKE Clusters Without Application-Layer Secrets Encryption
- POC 2025-08-01gcloud-gke-secure-boot-disabled: GKE Node Pools Without Secure Boot Enabled
- POC 2025-08-01gcloud-gke-security-posture-disabled: GKE Security Posture Dashboard Not Enabled
- POC 2025-08-01gcloud-gke-shielded-nodes-disabled: GKE Cluster Not Using Shielded Nodes
- POC 2025-08-01gcloud-gke-transparent-encryption-disabled: GKE Clusters Without Inter-Node Transparent Encryption
- POC 2025-08-01gcloud-gke-vpc-native-disabled: GKE Clusters Without VPC-Native Traffic Routing
- POC 2025-08-01gcloud-gke-vulnerability-scanning-disabled: GKE Clusters Without Workload Vulnerability Scanning
- POC 2025-08-01gcloud-gke-workload-identity-disabled: GKE Clusters Without Workload Identity Federation
- POC 2025-08-01gcloud-access-approval-not-enabled: Access Approval Not Enabled in GCP Projects
- POC 2025-08-01gcloud-api-keys-present: Delete Google Cloud API Keys
- POC 2025-08-01gcloud-iam-admin-roles: IAM Users with Administrative Roles
- POC 2025-08-01gcloud-iam-primitive-roles: Minimize the Use of Primitive Roles
- POC 2025-08-01gcloud-iam-separation-duties: Enforce Separation of Duties for Service-Account Related Roles
- POC 2025-08-01gcloud-iam-service-roles-project-level: Service Account Roles at Project Level
- POC 2025-08-01gcloud-iam-unrestricted-decryption: IAM Users with Unrestricted Data Decryption Permissions
- POC 2025-08-01gcloud-service-account-admin-restriction: Restrict Administrator Access for Service Accounts
- POC 2025-08-01gcloud-service-account-user-keys: User-Managed Service Account Keys Found
- POC 2025-08-01gcloud-kms-public-access: Publicly Accessible Google Cloud KMS Keys
- POC 2025-08-01gcloud-alb-ssl-google-managed: Use Google-Managed SSL Certificates for Application Load Balancers
- POC 2025-08-01gcloud-approved-external-lb: Unapproved External Load Balancers in Google Cloud Projects
- POC 2025-08-01gcloud-https-lb-logging-disabled: Logging Disabled on HTTP(S) Load Balancers
- POC 2025-08-01gcloud-lb-backend-unsecured: Unsecured Backend Services in Google Cloud Load Balancers
- POC 2025-08-01gcloud-enable-data-access-audit-logging: Enable Data Access Audit Logging for All Critical Service APIs
- POC 2025-08-01gcloud-logging-global-buckets-check: Logging Buckets Not Configured with Global Location
- POC 2025-08-01gcloud-log-retention-period-insufficient: Insufficient Log Data Retention Period in Cloud Logging Buckets
- POC 2025-08-01gcloud-logging-sink-not-configured: Export All Log Entries Using Sinks Not Configured
- POC 2025-08-01gcloud-logs-router-cmek-not-enabled: Logs Router Encryption with Customer-Managed Keys Not Enabled
- POC 2025-08-01gcloud-vpc-network-changes-monitoring-not-enabled: Enable VPC Network Changes Monitoring
- POC 2025-08-01gcloud-iam-least-privilege-nat: Least Privilege Access for Cloud NAT Management
- POC 2025-08-01gcloud-nat-logging-disabled: Logging Disabled for Cloud NAT Gateways
- POC 2025-08-01gcloud-nat-private-subnet-disabled: Cloud NAT Not Enabled for Private Subnets
- POC 2025-08-01gcloud-nat-static-ip-unconfigured: Cloud NAT Gateways Not Configured with Reserved Static IPs
- POC 2025-08-01gcloud-nat-subnet-unrestricted: NAT Gateway Subnets Not Restricted to Specific VPCs
- POC 2025-08-01gcloud-pubsub-cmek-disabled: Pub/Sub Topics Not Encrypted with Customer-Managed Encryption Keys
- POC 2025-08-01gcloud-pubsub-crossproject-access: Pub/Sub Subscription Cross-Project Access
- POC 2025-08-01gcloud-pubsub-deadletter-disabled: Dead Letter Topic Not Enabled for Google Pub/Sub Subscriptions
- POC 2025-08-01gcloud-pubsub-publicly-accessible: Publicly Accessible Pub/Sub Topics
- POC 2025-08-01gcloud-org-allowed-external-ips: Organization Policy for Allowed External IPs Not Configured
- POC 2025-08-01gcloud-org-auto-iam-grants: Automatic IAM Role Grants for Default Service Accounts Not Disabled
- POC 2025-08-01gcloud-org-default-network: Default Network Creation Not Disabled
- POC 2025-08-01gcloud-org-detailed-audit-logging: Detailed Audit Logging Mode Not Enabled
- POC 2025-08-01gcloud-org-guest-attributes: Guest Attributes of Compute Engine Metadata Not Disabled
- POC 2025-08-01gcloud-org-ip-forwarding: VM IP Forwarding Not Restricted
- POC 2025-08-01gcloud-org-load-balancer-types: Load Balancer Creation Not Restricted by Type
- POC 2025-08-01gcloud-org-os-login: OS Login Not Required
- POC 2025-08-01gcloud-org-resource-locations: Resource Location Restrictions Not Configured
- POC 2025-08-01gcloud-org-service-account-creation: Service Account Creation Not Disabled
- POC 2025-08-01gcloud-org-service-account-key-creation: Service Account Key Creation Not Disabled
- POC 2025-08-01gcloud-org-service-account-key-upload: Service Account Key Upload Not Disabled
- POC 2025-08-01gcloud-org-shared-vpc-subnets: Shared VPC Subnetworks Not Restricted
- POC 2025-08-01gcloud-org-sql-authorized-networks: Cloud SQL Authorized Networks Not Restricted
- POC 2025-08-01gcloud-org-sql-public-ip: Public IP Access for Cloud SQL Instances Not Restricted
- POC 2025-08-01gcloud-org-trusted-images: Trusted Image Projects Not Defined
- POC 2025-08-01gcloud-org-uniform-bucket-access: Uniform Bucket-Level Access Not Enforced
- POC 2025-08-01gcloud-org-vpc-peering: VPC Peering Usage Not Restricted
- POC 2025-08-01gcloud-org-vpn-peer-ips: VPN Peer IP Addresses Not Restricted
- POC 2025-08-01gcloud-org-workload-identity: Workload Identity Cluster Creation Not Disabled
- POC 2025-08-01gcloud-run-services-user-labels-missing: Missing User-Defined Labels in Cloud Run Services
- POC 2025-08-01gcloud-mysql-local-infile-enabled: Local Infile Enabled in MySQL Database Instances
- POC 2025-08-01gcloud-mysql-pitr-disabled: Point-in-Time Recovery Disabled for MySQL Instances
- POC 2025-08-01gcloud-mysql-slowquerylog-disabled: Slow Query Log Disabled for MySQL Database Servers
- POC 2025-08-01gcloud-pg-log-error-verbosity-flag-not-configured: Log Error Verbosity Flag Not Configured Properly for PostgreSQL Instances
- POC 2025-08-01gcloud-pg-log-executor-stats-enabled: Log Executor Stats Enabled in PostgreSQL Database Instances
- POC 2025-08-01gcloud-pg-log-min-duration-statement-enabled: Log Min Duration Statement Enabled in PostgreSQL Database Instances
- POC 2025-08-01gcloud-pg-log-min-error-statement-flag-not-configured: Log Min Error Statement Flag Not Configured Properly for PostgreSQL Instances
- POC 2025-08-01gcloud-pg-log-parser-stats-enabled: Log Parser Stats Enabled in PostgreSQL Database Instances
- POC 2025-08-01gcloud-pg-log-planner-stats-enabled: Log Planner Stats Enabled in PostgreSQL Database Instances
- POC 2025-08-01gcloud-pg-log-statement-flag-not-configured: Log Statement Flag Not Configured Properly for PostgreSQL Database Instances
- POC 2025-08-01gcloud-pg-log-statement-stats-enabled: Log Statement Stats Enabled in PostgreSQL Database Instances
- POC 2025-08-01gcloud-postgresql-log-hostname-disabled: Log Hostname Flag Disabled for PostgreSQL Database Instances
- POC 2025-08-01gcloud-postgresql-logtempfiles-disabled: Log Temporary Files Flag Disabled in PostgreSQL Database Instances
- POC 2025-08-01gcloud-sql-auto-storage-limit-not-configured: Automatic Storage Increase Limit Not Configured for Cloud SQL
- POC 2025-08-01gcloud-sql-backups-disabled: Automated Backups Not Enabled for Cloud SQL Instances
- POC 2025-08-01gcloud-sql-contained-db-authentication-enabled: Contained Database Authentication Enabled in SQL Server Database Instances
- POC 2025-08-01gcloud-sql-cross-db-ownership-chaining-enabled: Cross DB Ownership Chaining Enabled in SQL Server Database Instances
- POC 2025-08-01gcloud-sql-database-public-ip-configured: Cloud SQL Database Instances with Public IPs
- POC 2025-08-01gcloud-sql-ha-not-enabled: High Availability Not Enabled for Cloud SQL Database Instances
- POC 2025-08-01gcloud-sql-log-checkpoints-disabled: Log Checkpoints Disabled in PostgreSQL Database Instances
- POC 2025-08-01gcloud-sql-log-connections-disabled: Log Connections Disabled for PostgreSQL Database Instances
- POC 2025-08-01gcloud-sql-log-lock-waits-disabled: Log Lock Waits Flag Disabled for PostgreSQL Database Instances
- POC 2025-08-01gcloud-sql-publicly-accessible-instances: Publicly Accessible Cloud SQL Database Instances
- POC 2025-08-01gcloud-sql-remote-access-enabled: Remote Access Enabled for SQL Server Database Instances
- POC 2025-08-01gcloud-sql-skip-show-database-disabled: Skip Show Database Flag Not Enabled for MySQL Instances
- POC 2025-08-01gcloud-sql-ssl-not-enforced: SSL/TLS Not Enforced for Cloud SQL Incoming Connections
- POC 2025-08-01gcloud-sql-ssl-tls-connections-not-enforced: Allow SSL/TLS Connections Only
- POC 2025-08-01gcloud-sql-trace-3625-enabled: Trace Flag 3625 Enabled in SQL Server Database Instances
- POC 2025-08-01gcloud-sql-user-options: User Options Flag Enabled in Google Cloud SQL Server Instances
- POC 2025-08-01gcloud-bucket-policies-admin-permissions: Check Bucket Policies with Administrative Permissions
- POC 2025-08-01gcloud-bucket-website-config-not-defined: Define Index Page Suffix and Error Page for Bucket Website Configuration
- POC 2025-08-01gcloud-data-access-audit-logs-not-enabled: Enable Data Access Audit Logs for Cloud Storage
- POC 2025-08-01gcloud-insufficient-data-retention-period: Check for Sufficient Data Retention Period for Cloud Storage Buckets
- POC 2025-08-01gcloud-lifecycle-management-not-enabled: Enable Lifecycle Management for Cloud Storage Objects
- POC 2025-08-01gcloud-object-encryption-cmk-not-enabled: Enable Object Encryption with Customer-Managed Keys for Cloud Storage Buckets
- POC 2025-08-01gcloud-object-versioning-not-enabled: Enable Object Versioning for Cloud Storage Buckets
- POC 2025-08-01gcloud-public-access-prevention-not-enabled: Enforce Public Access Prevention for Cloud Storage Buckets
- POC 2025-08-01gcloud-publicly-accessible-storage-buckets: Check for Publicly Accessible Cloud Storage Buckets
- POC 2025-08-01gcloud-secure-cors-configuration: Secure CORS Configuration for Cloud Storage Buckets
- POC 2025-08-01gcloud-storage-logs-not-enabled: Enable Usage and Storage Logs for Cloud Storage Buckets
- POC 2025-08-01gcloud-uniform-bucket-level-access-not-enabled: Enable Uniform Bucket-Level Access for Cloud Storage Buckets
- POC 2025-08-01gcloud-vpc-service-controls-not-configured: Use VPC Service Controls for Cloud Storage Buckets
- POC 2025-08-01gcloud-vertexai-auto-upgrades: Automatic Upgrades Not Enabled for Vertex AI Notebooks
- POC 2025-08-01gcloud-vertexai-default-vpc: Default VPC Network In Use for Vertex AI Notebooks
- POC 2025-08-01gcloud-vertexai-external-ip: External IP Addresses Assigned to Vertex AI Notebooks
- POC 2025-08-01gcloud-vertexai-idle-shutdown: Idle Shutdown Not Enabled for Vertex AI Notebooks
- POC 2025-08-01gcloud-vertexai-integrity: Integrity Monitoring Not Enabled for Vertex AI Notebooks
- POC 2025-08-01gcloud-vertexai-monitoring: Cloud Monitoring Not Enabled for Vertex AI Notebooks
- POC 2025-08-01gcloud-vertexai-root-access: Root Access Not Disabled for Vertex AI Notebooks
- POC 2025-08-01gcloud-vertexai-secure-boot: Secure Boot Not Enabled for Vertex AI Notebooks
- POC 2025-08-01gcloud-vertexai-vtpm: Virtual Trusted Platform Module Not Enabled for Vertex AI Notebooks
- POC 2025-08-01gcloud-check-legacy-networks: Check for Legacy Networks
- POC 2025-08-01gcloud-default-vpc-in-use: Default VPC Network In Use
- POC 2025-08-01gcloud-dns-logging-not-enabled: Enable Cloud DNS Logging for VPC Networks
- POC 2025-08-01gcloud-enable-vpc-flow-logs: Enable VPC Flow Logs for VPC Subnets
- POC 2025-08-01gcloud-exclude-metadata-from-firewall-logging: Exclude Metadata from Firewall Logging
- POC 2025-08-01gcloud-firewall-rule-logging-not-enabled: Enable Logging for VPC Firewall Rules
- POC 2025-08-01gcloud-unrestricted-dns-access: Check for Unrestricted DNS Access
- POC 2025-08-01gcloud-unrestricted-ftp-access: Check for Unrestricted FTP Access
- POC 2025-08-01gcloud-unrestricted-icmp-access: Check for Unrestricted ICMP Access
- POC 2025-08-01gcloud-unrestricted-inbound-uncommon-ports: Check for Unrestricted Inbound Access on Uncommon Ports
- POC 2025-08-01gcloud-unrestricted-mysql-access: Check for Unrestricted MySQL Database Access
- POC 2025-08-01gcloud-unrestricted-oracle-db-access: Check for Unrestricted Oracle Database Access
- POC 2025-08-01gcloud-unrestricted-outbound-access: Check for Unrestricted Outbound Access on All Ports
- POC 2025-08-01gcloud-unrestricted-postgresql-access: Check for Unrestricted PostgreSQL Database Access
- POC 2025-08-01gcloud-unrestricted-rdp-access: Check for Unrestricted RDP Access
- POC 2025-08-01gcloud-unrestricted-rpc-access: Check for Unrestricted RPC Access