Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-38646
HistoryJul 21, 2023 - 3:15 p.m.

Design/Logic Flaw

2023-07-2115:15:00
PRIOn knowledge base
www.prio-n.com
28
metabase
arbitrary commands
server privilege

9.7 High

AI Score

Confidence

High

0.899 High

EPSS

Percentile

98.8%

Metabase open source before 0.46.6.1 and Metabase Enterprise before 1.46.6.1 allow attackers to execute arbitrary commands on the server, at the server’s privilege level. Authentication is not required for exploitation. The other fixed versions are 0.45.4.1, 1.45.4.1, 0.44.7.1, 1.44.7.1, 0.43.7.2, and 1.43.7.2.

9.7 High

AI Score

Confidence

High

0.899 High

EPSS

Percentile

98.8%