tigergraph tigergraph_enterprise の CVE(2 件)

CVE 件数: 2 CPE versions: View versions table

概要

本ページは tigergraph tigergraph_enterprise に影響する公開済み CVE(NVD の CPE 経由で関連付け)を列挙します。各行に深刻度指標・概要・公開日が含まれます。

表示中 12 / 2 CVE 件数
«« 先頭 « 前へ 1 / 1 次へ »
CVE 概要 ソース CVSS 最大値 EPSS(%) 公開 更新
CVE-2023-22949 An issue was discovered in TigerGraph Enterprise Free Edition 3.x. There is logging of user credentials. All authenticated GSQL access requests are logged by TigerGraph in multiple places. Each request includes both the username and password of the user in an easily decodable base64 form. That could allow a TigerGraph administrator to effectively harvest usernames/passwords. [email protected] 4.9 0.42% 2023-04-14 2025-02-07
CVE-2023-22951 An issue was discovered in TigerGraph Enterprise Free Edition 3.x. It creates an authentication token for internal systems use. This token can be read from the configuration file. Using this token on the REST API provides an attacker with anonymous admin-level privileges on all REST API endpoints. [email protected] 8.8 0.83% 2023-04-13 2025-02-07
«« 先頭 « 前へ 1 / 1 次へ »
cvelogic Threat Intelligence