Apache Software Foundation IoTDB 0.9.1

CPE Details

Apache Software Foundation IoTDB 0.9.1
0.9.1
2020-04-30
15h17 +00:00
2020-04-30
15h17 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:apache:iotdb:0.9.1:*:*:*:*:*:*:*

Informations

Vendor

apache

Product

iotdb

Version

0.9.1

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2020-25649 2020-12-03 15h16 +00:00 A flaw was found in FasterXML Jackson Databind, where it did not have entity expansion secured properly. This flaw allows vulnerability to XML external entity (XXE) attacks. The highest threat from this vulnerability is data integrity.
7.5
Haute
CVE-2020-1952 2020-04-27 14h16 +00:00 An issue was found in Apache IoTDB .9.0 to 0.9.1 and 0.8.0 to 0.8.2. When starting IoTDB, the JMX port 31999 is exposed with no certification.Then, clients could execute code remotely.
9.8
Critique