PT-2022-19935 · Magnitude Simba · Magnitude Simba Amazon Athena Jdbc Driver
Published
2022-05-09
·
Updated
2022-05-18
·
CVE-2022-29971
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Magnitude Simba Amazon Athena ODBC Driver versions 1.1.1 through 1.1.x before 1.1.17
Description
An argument injection vulnerability in the browser-based authentication component may allow a local user to execute arbitrary code.
Recommendations
For Magnitude Simba Amazon Athena ODBC Driver versions 1.1.1 through 1.1.x before 1.1.17, update to version 1.1.17 or later to resolve the issue.
Fix
Argument Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Magnitude Simba Amazon Athena Jdbc Driver