ZeroHour

CVE-2021-39233

CVSS 3.1
9.1 critical
EPSS
2%p82
Published
()
Modified
Description

In Apache Ozone versions prior to 1.2.0, Container related Datanode requests of Ozone Datanode were not properly authorized and can be called by any client.

Vendors
apache
Products
ozone
Weakness
CWE-306
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.