9.1
CVSSv3

CVE-2021-42767

Published: 01/03/2022 Updated: 04/10/2022
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

A directory traversal vulnerability in the apoc plugins in Neo4J Graph database prior to 4.4.0.1 allows malicious users to read local files, and sometimes create local files. This is fixed in 3.5.17, 4.2.10, 4.3.0.4, and 4.4.0.1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

neo4j awesome procedures