ZeroHour

CVE-2021-34802

CVSS 3.1
8.8 high
EPSS
1%p62
Published
()
Modified
Description

A failure in resetting the security context in some transaction actions in Neo4j Graph Database 4.2 and 4.3 could allow authenticated users to execute commands with elevated privileges.

Vendors
neo4j
Products
graph databse
Weakness
CWE-269
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.