Arc
by CDATA
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-31850 | Hig | 0.56 | 8.6 | 0.03 | Apr 5, 2024 | A path traversal vulnerability exists in the Java version of CData Arc < 23.4.8839 when running using the embedded Jetty server, which could allow an unauthenticated remote attacker to gain access to sensitive information and perform limited actions. | ||
| CVE-2023-24243 | Hig | 0.49 | 7.5 | 0.04 | Jun 16, 2023 | CData RSB Connect v22.0.8336 was discovered to contain a Server-Side Request Forgery (SSRF). |
- risk 0.56cvss 8.6epss 0.03
A path traversal vulnerability exists in the Java version of CData Arc < 23.4.8839 when running using the embedded Jetty server, which could allow an unauthenticated remote attacker to gain access to sensitive information and perform limited actions.
- risk 0.49cvss 7.5epss 0.04
CData RSB Connect v22.0.8336 was discovered to contain a Server-Side Request Forgery (SSRF).