In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, executor services don't check client permissions properly, allowing authenticated users to execute tasks on members without the required permissions granted.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-07-18T00:00:00

Updated: 2023-07-18T00:00:00

Reserved: 2023-05-22T00:00:00


Link: CVE-2023-33265

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-07-18T16:15:11.693

Modified: 2023-07-28T13:20:47.797


Link: CVE-2023-33265

JSON object: View

cve-icon Redhat Information

No data.

CWE