PT-2026-47630 · Dtstack · Taier
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
DTStack Taier versions prior to 1.4.0
Description
An issue in the Source Connection Test Endpoint allows remote attackers to perform manipulations leading to improper authentication. The flaw exists within the
preHandle() function located in the taier-data-develop/src/main/java/com/dtstack/taier/develop/interceptor/LoginInterceptor.java file.Recommendations
Apply patch f95389e7f74acec42bcee079a616aaa06f9551d2 to versions prior to 1.4.0.
Exploit
Fix
Improper Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Taier