Lucene search

K
osvGoogleOSV:CVE-2017-12610
HistoryJul 26, 2018 - 2:29 p.m.

CVE-2017-12610

2018-07-2614:29:00
Google
osv.dev
6

6.7 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

50.3%

In Apache Kafka 0.10.0.0 to 0.10.2.1 and 0.11.0.0 to 0.11.0.1, authenticated Kafka clients may use impersonation via a manually crafted protocol message with SASL/PLAIN or SASL/SCRAM authentication when using the built-in PLAIN or SCRAM server implementations in Apache Kafka.

6.7 Medium

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

50.3%