In Apache CouchDB prior to 3.2.2, an attacker can access an improperly secured default installation without authenticating and gain admin privileges. The CouchDB documentation has always made recommendations for properly securing an installation, including recommending using a firewall in front of all CouchDB installations.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apache

Published: 2022-04-26T00:00:00

Updated: 2022-11-02T00:00:00

Reserved: 2022-02-10T00:00:00


Link: CVE-2022-24706

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2022-04-26T10:15:35.083

Modified: 2023-11-07T03:44:33.733


Link: CVE-2022-24706

JSON object: View

cve-icon Redhat Information

No data.

CWE