CVE-2021-39234 - CERT CVE
ID CVE-2021-39234
Sažetak In Apache Ozone versions prior to 1.2.0, Authenticated users knowing the ID of an existing block can craft specific request allowing access those blocks, bypassing other security checks like ACL.
Reference
CVSS
Base: 4.9
Impact: 4.9
Exploitability:6.8
Pristup
VektorSloženostAutentikacija
NETWORK MEDIUM SINGLE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL PARTIAL NONE
CVSS vektor AV:N/AC:M/Au:S/C:P/I:P/A:N
Zadnje važnije ažuriranje 19-11-2021 - 14:53
Objavljeno 19-11-2021 - 10:15