Apache ShenYu Admin has insecure permissions, which may allow low-privilege administrators to modify high-privilege administrator's passwords. This issue affects Apache ShenYu 2.4.2 and 2.4.3.
References
Link Resource
https://lists.apache.org/thread/ndblyxr2fdrvjtgbs1bogxgv2cgk7t28 Mailing List Patch Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: apache

Published: 2022-09-01T14:00:14

Updated: 2023-07-25T08:21:45.964Z

Reserved: 2022-08-05T00:00:00


Link: CVE-2022-37435

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-09-01T14:15:10.427

Modified: 2023-08-02T17:20:00.120


Link: CVE-2022-37435

JSON object: View

cve-icon Redhat Information

No data.

CWE