Vulnerability Details CVE-2023-24829
Incorrect Authorization vulnerability in Apache Software Foundation Apache IoTDB.This issue affects the iotdb-web-workbench component from 0.13.0 before 0.13.3. iotdb-web-workbench is an optional component of IoTDB, providing a web console of the database.
This problem is fixed from version 0.13.3 of iotdb-web-workbench onwards.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 34.2%
CVSS Severity
CVSS v3 Score 8.8
Products affected by CVE-2023-24829
-
cpe:2.3:a:apache:iotdb:0.13.0
-
cpe:2.3:a:apache:iotdb:0.13.1
-
cpe:2.3:a:apache:iotdb:0.13.2