Vulnerability Details CVE-2024-5166
An Insecure Direct Object Reference in Google Cloud's Looker allowed metadata exposure across authenticated Looker users sharing the same LookML model.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 21.1%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2024-5166
-
cpe:2.3:a:google:looker:23.18
-
cpe:2.3:a:google:looker:23.20
-
cpe:2.3:a:google:looker:24.0
-
cpe:2.3:a:google:looker:24.10
-
cpe:2.3:a:google:looker:24.12
-
cpe:2.3:a:google:looker:24.14
-
cpe:2.3:a:google:looker:24.16
-
cpe:2.3:a:google:looker:24.18
-
cpe:2.3:a:google:looker:24.2
-
cpe:2.3:a:google:looker:24.20
-
cpe:2.3:a:google:looker:24.4
-
cpe:2.3:a:google:looker:24.6
-
cpe:2.3:a:google:looker:24.8