CVE Database
/

CVE-2017-7686

Back to search

CVE-2017-7686

Published: Jun 28, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

Apache Ignite 1.0.0-RC3 to 2.0 uses an update notifier component to update the users about new project releases that include additional functionality, bug fixes and performance improvements. To do that the component communicates to an external PHP server (http://ignite.run) where it needs to send some system properties like Apache Ignite or Java version. Some of the properties might contain user sensitive information.

VendorProductVersions

Apache Software Foundation

Apache Ignite

affected
1.0.0-RC3 to 2.0

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now