ZeroHour

CVE-2021-27225

CVSS 3.1
5.4 medium
EPSS
<1%p42
Published
()
Modified
Description

In Dataiku DSS before 8.0.6, insufficient access control in the Jupyter notebooks integration allows users (who have coding permissions) to read and overwrite notebooks in projects that they are not authorized to access.

Vendors
dataiku
Products
data science studio
Weakness
CWE-863
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.