A vulnerability was found in Apache Druid 0.21.0/0.21.1. It has been rated as problematic. This issue affects some unknown processing of the component HTTP InputSource. Upgrading to version 0.22.0 eliminates this vulnerability.
Apache Druid 0.21.0/0.21.1 HTTP InputSource information disclosure
- Virtual Patching
- September 24, 2021
- 6:04 pm
CVE-2024-52759 : D-LINK DI-8003 16.07.26A1 IP_POSITION_ASP IP BUFFER OVERFLOW
Description D-LINK DI-8003 v16.07.26A1 was discovered to contain a buffer overflow via the ip parameter in the ip_position_asp function. References
CVE-2024-51503 : TREND MICRO DEEP SECURITY UP TO 20.0 OS COMMAND INJECTION
Description A security agent manual scan command injection vulnerability in the Trend Micro Deep Security 20 Agent could allow an
CVE-2024-52360 : IBM CONCERT SOFTWARE 1.0.0/1.0.1/1.0.2/1.0.2.1 SQL INJECTION
Description IBM Concert Software 1.0.0, 1.0.1, 1.0.2, and 1.0.2.1 is vulnerable to SQL injection. A remote attacker could send specially