Vulnerabilities
Vulnerable Software
Clear:  >> Clearml Enterprise Server  Security Vulnerabilities
An information disclosure vulnerability exists in the Vault API functionality of ClearML Enterprise Server 3.22.5-1533. A specially crafted HTTP request can lead to reading vaults that have been previously disabled, possibly leaking sensitive credentials. An attacker can send a series of HTTP requests to trigger this vulnerability.
CVSS Score
7.7
EPSS Score
0.0
Published
2025-02-06
A cross-site scripting (xss) vulnerability exists in the dataset upload functionality of ClearML Enterprise Server 3.22.5-1533. A specially crafted HTTP request can lead to an arbitrary html code. An attacker can send a series of HTTP requests to trigger this vulnerability.
CVSS Score
9.0
EPSS Score
0.001
Published
2025-02-06


Contact Us

Shodan ® - All rights reserved