Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Tue, 01 Apr 2025 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Appsmith
Appsmith appsmith |
|
| CPEs | cpe:2.3:a:appsmith:appsmith:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Appsmith
Appsmith appsmith |
Thu, 27 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-94 | |
| Metrics |
cvssV3_1
|
Wed, 26 Mar 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An issue was discovered in Appsmith before 1.52. An incorrectly configured PostgreSQL instance in the Appsmith image leads to remote command execution inside the Appsmith Docker container. The attacker must be able to access Appsmith, login to it, create a datasource, create a query against that datasource, and execute that query. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-03-27T13:33:44.023Z
Reserved: 2024-12-13T00:00:00.000Z
Link: CVE-2024-55964
Updated: 2025-03-27T13:33:22.172Z
Status : Analyzed
Published: 2025-03-26T20:15:21.373
Modified: 2025-04-01T16:34:34.710
Link: CVE-2024-55964
No data.
OpenCVE Enrichment
No data.