Junglewise Threat Intelligence

CVE-2023-24831: PYSEC-2023-7 - Improper Authentication vulnerability in Apache Software Foundation Apache IoTDB.This issue affects Apache IoTDB Grafana Connector: from 0.1

CVE-2023-24831 · Severity: low · CVSS 3.1 · Published 2023-04-17

Technologies: apache-iotdb (PyPI). Vendors: Maven, PyPI.

Executive brief

Improper Authentication vulnerability in Apache Software Foundation Apache IoTDB.This issue affects Apache IoTDB Grafana Connector: from 0.13.0 through 0.13.3.

Attackers could login without authorization. This is fixed in 0.13.4.

Affected products

  • Maven org.apache.iotdb:iotdb-grafana-connector
  • PyPI apache-iotdb

Related threats