Vulnerabilities > Apache > Iotdb > Critical

DATE CVE VULNERABILITY TITLE RISK
2024-01-15 CVE-2023-46226 Unspecified vulnerability in Apache Iotdb 1.0.0/1.1.0/1.2.2
Remote Code Execution vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from 1.0.0 through 1.2.2. Users are recommended to upgrade to version 1.3.0, which fixes the issue.
network
low complexity
apache
critical
9.8
2023-12-21 CVE-2023-51656 Deserialization of Untrusted Data vulnerability in Apache Iotdb
Deserialization of Untrusted Data vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from 0.13.0 through 0.13.4. Users are recommended to upgrade to version 1.2.2, which fixes the issue.
network
low complexity
apache CWE-502
critical
9.8
2023-04-17 CVE-2023-24831 Improper Authentication vulnerability in Apache Iotdb 0.13.0/0.13.1/0.13.2
Improper Authentication vulnerability in Apache Software Foundation Apache IoTDB.This issue affects Apache IoTDB Grafana Connector: from 0.13.0 through 0.13.3. Attackers could login without authorization.
network
low complexity
apache CWE-287
critical
9.8
2020-04-27 CVE-2020-1952 Improper Certificate Validation vulnerability in Apache Iotdb
An issue was found in Apache IoTDB .9.0 to 0.9.1 and 0.8.0 to 0.8.2.
network
low complexity
apache CWE-295
critical
9.8