Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
KNIME Server before 4.12.6 and 4.13.x before 4.13.4 (when installed in unattended mode) keeps the administrator's password in a file without appropriate file access controls, allowing all local users to read its content.
CVSS Information
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
Vulnerability Type
N/A
Vulnerability Title
Knime Server 安全漏洞
Vulnerability Description
Knime Server是瑞士Knime公司的用于将数据科学工作流投入生产的企业软件。 Knime Server 4.12.6之前版本和4.13.4之前版本存在安全漏洞,该漏洞源于当管理员密码保存在没有文件访问控制的文件中,所有本地用户都可以读取其内容。
CVSS Information
N/A
Vulnerability Type
N/A