Логотип exploitDog
bind:CVE-2023-29216
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-29216

Количество 2

Количество 2

nvd логотип

CVE-2023-29216

почти 3 года назад

In Apache Linkis <=1.3.1, because the parameters are not effectively filtered, the attacker uses the MySQL data source and malicious parameters to configure a new data source to trigger a deserialization vulnerability, eventually leading to remote code execution. Versions of Apache Linkis <= 1.3.0 will be affected. We recommend users upgrade the version of Linkis to version 1.3.2.

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-rrhf-32rq-f28h

почти 3 года назад

Apache Linkis DatasourceManager module has deserialization vulnerability

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-29216

In Apache Linkis <=1.3.1, because the parameters are not effectively filtered, the attacker uses the MySQL data source and malicious parameters to configure a new data source to trigger a deserialization vulnerability, eventually leading to remote code execution. Versions of Apache Linkis <= 1.3.0 will be affected. We recommend users upgrade the version of Linkis to version 1.3.2.

CVSS3: 9.8
5%
Низкий
почти 3 года назад
github логотип
GHSA-rrhf-32rq-f28h

Apache Linkis DatasourceManager module has deserialization vulnerability

CVSS3: 9.8
5%
Низкий
почти 3 года назад

Уязвимостей на страницу