Beveiligingsadvies

CVE-2024-45199

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-04-03 00:00:00
Laatst bijgewerkt 2025-04-04 15:17:46
Toegewezen door mitre
CVSS-score 8.8
Status PUBLISHED

Beschrijving

insightsoftware Hive JDBC through 2.6.13 has a remote code execution vulnerability. Attackers can inject malicious parameters into the JDBC URL, triggering JNDI injection during the process when the JDBC Driver uses this URL to connect to the database. This can further lead to remote code execution.