Apache Ignite 1.0.0-RC3 to 2.0 uses an update notifier component to update the users about new project releases that include additional functionality, bug fixes and performance improvements. To do that the component communicates to an external PHP server (http://ignite.run) where it needs to send some system properties like Apache Ignite or Java version. Some of the properties might contain user sensitive information.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published: 2017-06-28T13:00:00

Updated: 2024-08-05T16:12:28.262Z

Reserved: 2017-04-11T00:00:00

Link: CVE-2017-7686

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2017-06-28T13:29:00.217

Modified: 2017-07-06T18:12:25.317

Link: CVE-2017-7686

cve-icon Redhat

No data.