In Apache CouchDB prior to 3.2.2, an attacker can access an improperly secured default installation without authenticating and gain admin privileges. The CouchDB documentation has always made recommendations for properly securing an installation, including recommending using a firewall in front of all CouchDB installations.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published: 2022-04-26T00:00:00

Updated: 2024-08-03T04:20:50.213Z

Reserved: 2022-02-10T00:00:00

Link: CVE-2022-24706

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-04-26T10:15:35.083

Modified: 2024-11-21T06:50:55.013

Link: CVE-2022-24706

cve-icon Redhat

No data.