Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2024-16111
HistoryMar 26, 2024 - 12:00 a.m.

Apache Doris Security Bypass Vulnerability

2024-03-2600:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
apache doris
security bypass
mpp
analytic database
chmod() function

AI Score

6.9

Confidence

Low

EPSS

0

Percentile

9.0%

Apache Doris is a modern MPP analytic database product of the U.S. Apache (Apache) Foundation. Can provide sub-second queries and efficient real-time data analysis. Apache Doris has a security bypass vulnerability that stems from the use of the chmod() function, which can be exploited by an attacker to rename files from under user and modify the wrong files.

AI Score

6.9

Confidence

Low

EPSS

0

Percentile

9.0%

Related for CNVD-2024-16111