CVE Database
/

CVE-2020-10746

Back to search

CVE-2020-10746

Published: Oct 19, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

A flaw was found in Infinispan (org.infinispan:infinispan-server-runtime) version 10, where it permits local access to controls via both REST and HotRod APIs. This flaw allows a user authenticated to the local machine to perform all operations on the caches, including the creation, update, deletion, and shutdown of the entire server.

VendorProductVersions

n/a

Infinispan

affected
Infinispan 11.0.0

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now
CVE-2020-10746 - Security Vulnerability | QwikSec