Description
An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components.
Published: 2025-02-07
Score: 9.8 Critical
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-53716 An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components.
History

Fri, 28 Mar 2025 17:45:00 +0000

Type Values Removed Values Added
First Time appeared Dataease
Dataease dataease
CPEs cpe:2.3:a:dataease:dataease:1.0.0:-:*:*:*:*:*:*
Vendors & Products Dataease
Dataease dataease

Mon, 10 Feb 2025 17:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-94
Metrics cvssV3_1

{'score': 9.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Fri, 07 Feb 2025 16:00:00 +0000

Type Values Removed Values Added
Description An issue in DataEase v1 allows an attacker to execute arbitrary code via the user account and password components.
References

Subscriptions

Dataease Dataease
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-02-10T16:52:29.149Z

Reserved: 2025-01-09T00:00:00.000Z

Link: CVE-2024-57707

cve-icon Vulnrichment

Updated: 2025-02-10T16:52:25.348Z

cve-icon NVD

Status : Analyzed

Published: 2025-02-07T16:15:38.993

Modified: 2025-03-28T17:24:50.600

Link: CVE-2024-57707

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses