An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-53716 An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Fri, 28 Mar 2025 17:45:00 +0000

Type Values Removed Values Added
First Time appeared Dataease
Dataease dataease
CPEs cpe:2.3:a:dataease:dataease:1.0.0:-:*:*:*:*:*:*
Vendors & Products Dataease
Dataease dataease

Mon, 10 Feb 2025 17:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-94
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 07 Feb 2025 16:00:00 +0000

Type Values Removed Values Added
Description An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-02-10T16:52:29.149Z

Reserved: 2025-01-09T00:00:00.000Z

Link: CVE-2024-57707

cve-icon Vulnrichment

Updated: 2025-02-10T16:52:25.348Z

cve-icon NVD

Status : Analyzed

Published: 2025-02-07T16:15:38.993

Modified: 2025-03-28T17:24:50.600

Link: CVE-2024-57707

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.