PT-2019-9041 · Yandex · Clickhouse

CVE-2018-14670

·

Publicado

2019-08-15

·

Atualizado

2025-06-25

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ClickHouse versions prior to 1.1.54131
Description The issue is related to an incorrect configuration in the deb package, which could allow unauthorized use of the database.
Recommendations For versions prior to 1.1.54131, update to version 1.1.54131 or later to resolve the issue.

Correção

Improper Authorization

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-14670

Produtos afetados

Clickhouse