Home

Description

Improper Authentication vulnerability in Apache Software Foundation Apache IoTDB.This issue affects Apache IoTDB Grafana Connector: from 0.13.0 through 0.13.3. Attackers could login without authorization. This is fixed in 0.13.4.

PUBLISHED Reserved 2023-01-30 | Published 2023-04-17 | Updated 2024-10-21 | Assigner apache

Problem types

CWE-287 Improper Authentication

Product status

Default status
unaffected

0.13.0 (semver)
affected

References

lists.apache.org/thread/3dgvzgstycf8b5hyf4z3n7cqdhcyln3l vendor-advisory

lists.apache.org/thread/3dgvzgstycf8b5hyf4z3n7cqdhcyln3l vendor-advisory

cve.org (CVE-2023-24831)

nvd.nist.gov (CVE-2023-24831)

Download JSON