Description
The Contour Service was not checking that users had permission to create an analysis for a given dataset. This could allow an attacker to clutter up Compass folders with extraneous analyses, that the attacker would otherwise not have permission to create.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-26945 | The Contour Service was not checking that users had permission to create an analysis for a given dataset. This could allow an attacker to clutter up Compass folders with extraneous analyses, that the attacker would otherwise not have permission to create. |
References
History
Thu, 07 Nov 2024 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Palantir
Published:
Updated: 2024-11-07T18:29:04.974Z
Reserved: 2023-01-06T21:43:46.848Z
Link: CVE-2023-22834
Updated: 2024-08-02T10:20:30.681Z
Status : Modified
Published: 2023-06-27T00:15:09.437
Modified: 2024-11-21T07:45:29.317
Link: CVE-2023-22834
No data.
OpenCVE Enrichment
No data.
EUVD