Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-j6vx-r77h-44wc

Опубликовано: 02 авг. 2024
Источник: github
Github: Прошло ревью
CVSS4: 7
CVSS3: 4.9

Описание

Apache Linkis arbitrary file deletion vulnerability

In Apache Linkis <= 1.5.0, Arbitrary file deletion in Basic management services on a user with an administrator account could delete any file accessible by the Linkis system user. Users are recommended to upgrade to version 1.6.0, which fixes this issue.

Пакеты

Наименование

org.apache.linkis:linkis

maven
Затронутые версииВерсия исправления

< 1.6.0

1.6.0

EPSS

Процентиль: 46%
0.0023
Низкий

7 High

CVSS4

4.9 Medium

CVSS3

Дефекты

CWE-552

Связанные уязвимости

CVSS3: 4.9
nvd
больше 1 года назад

In Apache Linkis <= 1.5.0, Arbitrary file deletion in Basic management services on A user with an administrator account could delete any file accessible by the Linkis system user . Users are recommended to upgrade to version 1.6.0, which fixes this issue.

EPSS

Процентиль: 46%
0.0023
Низкий

7 High

CVSS4

4.9 Medium

CVSS3

Дефекты

CWE-552