Логотип exploitDog
bind:CVE-2024-24683
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2024-24683

Количество 2

Количество 2

nvd логотип

CVE-2024-24683

почти 2 года назад

Improper Input Validation vulnerability in Apache Hop Engine.This issue affects Apache Hop Engine: before 2.8.0. Users are recommended to upgrade to version 2.8.0, which fixes the issue. When Hop Server writes links to the PrepareExecutionPipelineServlet page one of the parameters provided to the user was not properly escaped. The variable not properly escaped is the "id", which is not directly accessible by users creating pipelines making the risk of exploiting this low. This issue only affects users using the Hop Server component and does not directly affect the client.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-f6g6-pjgc-5cj5

почти 2 года назад

Improper Input Validation vulnerability in Apache Hop Engine

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2024-24683

Improper Input Validation vulnerability in Apache Hop Engine.This issue affects Apache Hop Engine: before 2.8.0. Users are recommended to upgrade to version 2.8.0, which fixes the issue. When Hop Server writes links to the PrepareExecutionPipelineServlet page one of the parameters provided to the user was not properly escaped. The variable not properly escaped is the "id", which is not directly accessible by users creating pipelines making the risk of exploiting this low. This issue only affects users using the Hop Server component and does not directly affect the client.

CVSS3: 6.5
0%
Низкий
почти 2 года назад
github логотип
GHSA-f6g6-pjgc-5cj5

Improper Input Validation vulnerability in Apache Hop Engine

CVSS3: 6.5
0%
Низкий
почти 2 года назад

Уязвимостей на страницу