Security Advisory

CVE-2022-34112

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-07-22 22:17:18
Last updated 2024-08-03 08:16:16
Assigner mitre
State PUBLISHED

Description

An access control issue in the component /api/plugin/uninstall Dataease v1.11.1 allows attackers to arbitrarily uninstall the plugin, a right normally reserved for the administrator.