CVE-2023-34340

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-34340
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-34340.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-34340
Aliases
Published
2023-06-21T08:15:10Z
Modified
2024-10-09T17:46:13.094053Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

Improper Authentication vulnerability in Apache Software Foundation Apache Accumulo. This issue affects Apache Accumulo: 2.1.0.

Accumulo 2.1.0 contains a defect in the user authentication process that may succeed when invalid credentials are provided. Users are advised to upgrade to 2.1.1.

References

Affected packages

Git / github.com/apache/accumulo

Affected ranges

Type
GIT
Repo
https://github.com/apache/accumulo
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

1.*

1.4-development-closed
1.4.4
1.4.5
1.5.1
1.5.2
1.5.3
1.5.4
1.6.0
1.6.1
1.6.3
1.6.4
1.7.0

rel/1.*

rel/1.10.0
rel/1.10.1
rel/1.10.2
rel/1.6.5
rel/1.6.6
rel/1.7.1
rel/1.7.2
rel/1.7.3
rel/1.7.4
rel/1.8.0
rel/1.8.1
rel/1.9.0
rel/1.9.1
rel/1.9.2
rel/1.9.3

rel/2.*

rel/2.0.0
rel/2.0.0-alpha-1
rel/2.0.0-alpha-2
rel/2.0.1
rel/2.1.0