Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in Tigergraph Enterprise 3.7.0. There is unsecured write access to SSH authorized keys file. Any code running as the tigergraph user is able to add their SSH public key into the authorised keys file. This allows an attacker to obtain password-less SSH key access by using their own SSH key.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tigergraph 安全漏洞
Vulnerability Description
TigerGraph是TigerGraph社区的一款全球最快、最具扩展性的图分析平台。实现实时大数据图应用。 Tigergraph Enterprise 3.7.0版本存在安全漏洞。攻击者利用该漏洞可以使用自己的SSH密钥来获取无密码SSH密钥访问权限。
CVSS Information
N/A
Vulnerability Type
N/A