PT-2024-8844 · Bigdl · Bigdl

Houjingyi

·

Published

2024-11-12

·

Updated

2024-11-15

·

CVE-2024-29085

CVSS v3.1

5.5

Medium

VectorAV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions: BigDL versions prior to 2.5.0
Description: The issue is related to improper access control in BigDL software, which may allow an authenticated user to potentially enable escalation of privilege via adjacent access. This could permit a remote attacker to elevate their privileges.
Recommendations: For versions prior to 2.5.0, update to version 2.5.0 or later to resolve the issue.

Fix

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-10480
CVE-2024-29085

Affected Products

Bigdl