9.8
CVSSv3

CVE-2023-46226

Published: 15/01/2024 Updated: 22/01/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Remote Code Execution vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from 1.0.0 up to and including 1.2.2. Users are recommended to upgrade to version 1.3.0, which fixes the issue.

Vulnerable Product Search on Vulmon Subscribe to Product

apache iotdb

Mailing Lists

<!--X-Body-Begin--> <!--X-User-Header--> oss-sec mailing list archives <!--X-User-Header-End--> <!--X-TopPNI--> By Date By Thread </form> <!--X-TopPNI-End--> <!--X-MsgBody--> <!--X-Subject-Header-Begin--> CVE-2023-46226: Apache IoTDB: Remote Code Execution (RCE) risk via the UDF <!--X-Subject-Header-End--> <!--X-Head-of-Message-- ...