Vulnerabilities > CVE-2023-24829 - Incorrect Authorization vulnerability in Apache Iotdb 0.13.0/0.13.1/0.13.2
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
Incorrect Authorization vulnerability in Apache Software Foundation Apache IoTDB.This issue affects the iotdb-web-workbench component from 0.13.0 before 0.13.3. iotdb-web-workbench is an optional component of IoTDB, providing a web console of the database. This problem is fixed from version 0.13.3 of iotdb-web-workbench onwards.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 3 |