Infinispan 10.1.7

CPE Details

Infinispan 10.1.7
10.1.7
2020-12-07
12h45 +00:00
2020-12-07
12h45 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:infinispan:infinispan:10.1.7:*:*:*:*:*:*:*

Informations

Vendor

infinispan

Product

infinispan

Version

10.1.7

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-25711 2020-12-02 23h00 +00:00 A flaw was found in infinispan 10 REST API, where authorization permissions are not checked while performing some server management operations. When authz is enabled, any user with authentication can perform operations like shutting down the server without the ADMIN role.
6.5
Medium