NA

CVE-2023-33265

Published: 18/07/2023 Updated: 28/07/2023
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

In Hazelcast up to and including 5.0.4, 5.1 up to and including 5.1.6, and 5.2 up to and including 5.2.3, executor services don't check client permissions properly, allowing authenticated users to execute tasks on members without the required permissions granted.

Vulnerable Product Search on Vulmon Subscribe to Product

hazelcast imdg

hazelcast hazelcast