PT-2023-24826 · Apache · Apache Accumulo

Christopher Tubbs

·

Published

2023-06-21

·

Updated

2024-10-09

·

CVE-2023-34340

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Apache Accumulo version 2.1.0
Description The issue affects the user authentication process in Apache Accumulo, where a defect may allow authentication to succeed even when invalid credentials are provided.
Recommendations For Apache Accumulo version 2.1.0, upgrade to version 2.1.1 to resolve the issue.

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2023-34340
GHSA-HP5W-W29M-VG63

Affected Products

Apache Accumulo