Логотип exploitDog
bind:CVE-2022-39219
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-39219

Количество 2

Количество 2

nvd логотип

CVE-2022-39219

больше 3 лет назад

Bifrost is a middleware package which can synchronize MySQL/MariaDB binlog data to other types of databases. Versions 1.8.6-release and prior are vulnerable to authentication bypass when using HTTP basic authentication. This may allow group members who only have read permissions to write requests when they are normally forbidden from doing so. Version 1.8.7-release contains a patch. There are currently no known workarounds.

CVSS3: 8.5
EPSS: Низкий
github логотип

GHSA-p6fh-xc6r-g5hw

больше 3 лет назад

Brokercap Bifrost subject to authentication bypass when using HTTP basic authentication

CVSS3: 8.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-39219

Bifrost is a middleware package which can synchronize MySQL/MariaDB binlog data to other types of databases. Versions 1.8.6-release and prior are vulnerable to authentication bypass when using HTTP basic authentication. This may allow group members who only have read permissions to write requests when they are normally forbidden from doing so. Version 1.8.7-release contains a patch. There are currently no known workarounds.

CVSS3: 8.5
0%
Низкий
больше 3 лет назад
github логотип
GHSA-p6fh-xc6r-g5hw

Brokercap Bifrost subject to authentication bypass when using HTTP basic authentication

CVSS3: 8.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу