Vulnerability Details CVE-2023-51656
Deserialization of Untrusted Data vulnerability in Apache IoTDB.This issue affects Apache IoTDB: from 0.13.0 through 0.13.4.
Users are recommended to upgrade to version 1.2.2, which fixes the issue.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 53.2%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2023-51656
-
cpe:2.3:a:apache:iotdb:0.13.0
-
cpe:2.3:a:apache:iotdb:0.13.1
-
cpe:2.3:a:apache:iotdb:0.13.2
-
cpe:2.3:a:apache:iotdb:0.13.3
-
cpe:2.3:a:apache:iotdb:0.13.4