Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:40638
HistoryMay 23, 2023 - 4:01 a.m.

Incorrect Permission Assignment

2023-05-2304:01:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
19
incorrect permission assignment
authentication mechanism
vulnerability
software

EPSS

0.002

Percentile

61.1%

org.apache.inlong is vulnerable to Incorrect Permission Assignment. The vulnerability exists because the library does not properly implement the authentication mechanism when operating inlong consume, which allows an attacker to delete others’ subscriptions, even if they are not the owner of the deleted subscription.

EPSS

0.002

Percentile

61.1%