Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Admin Can Escalate Privileges to SuperAdmin Using Manual PUT Request
Vulnerability Description
Improper privilege management in Yugabyte Platform allows authenticated admin users to escalate privileges to SuperAdmin via a crafted PUT HTTP request, potentially leading to unauthorized access to sensitive system functions and data.
CVSS Information
N/A
Vulnerability Type
特权管理不恰当
Vulnerability Title
YugabyteDB 安全漏洞
Vulnerability Description
YugabyteDB是美国Yugabyte公司的一款用于云原生应用程序的高性能事务性分布式 SQL 数据库。 YugabyteDB存在安全漏洞,该漏洞源于不当的权限管理。经过身份验证的管理员攻击者利用该漏洞可以通过特制的 PUT HTTP 请求将权限提升到超级管理员,这可能导致未经授权访问敏感的系统功能和数据。
CVSS Information
N/A
Vulnerability Type
N/A