CVE-2017-9797
- EPSS 0.35%
- Veröffentlicht 03.10.2017 01:29:03
- Zuletzt bearbeitet 20.04.2025 01:37:25
When an Apache Geode cluster before v1.2.1 is operating in secure mode, an unauthenticated client can enter multi-user authentication mode and send metadata messages. These metadata operations could leak information about application data types. In a...
CVE-2017-9794
- EPSS 0.46%
- Veröffentlicht 30.09.2017 01:29:03
- Zuletzt bearbeitet 20.04.2025 01:37:25
When a cluster is operating in secure mode, a user with read privileges for specific data regions can use the gfsh command line utility to execute queries. In Apache Geode before 1.2.1, the query results may contain data from another user's concurren...
CVE-2017-5649
- EPSS 0.1%
- Veröffentlicht 04.04.2017 18:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Apache Geode before 1.1.1, when a cluster has enabled security by setting the security-manager property, allows remote authenticated users with CLUSTER:READ but not DATA:READ permission to access the data browser page in Pulse and consequently execut...