In Hazelcast Platform through 5.3.4, a security issue exists within the SQL mapping for the CSV File Source connector. This issue arises from inadequate permission checking, which could enable unauthorized clients to access data from files stored on a member's filesystem.
Metrics
Affected Vendors & Products
References
History
Thu, 27 Mar 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Hazelcast
Hazelcast hazelcast |
|
| CPEs | cpe:2.3:a:hazelcast:hazelcast:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Hazelcast
Hazelcast hazelcast |
Wed, 06 Nov 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-89 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published: 2024-02-16T00:00:00.000Z
Updated: 2024-11-06T16:20:00.171Z
Reserved: 2023-10-14T00:00:00.000Z
Link: CVE-2023-45860
Updated: 2024-08-02T20:29:32.470Z
Status : Analyzed
Published: 2024-02-16T10:15:08.080
Modified: 2025-03-27T14:24:47.243
Link: CVE-2023-45860