CVE-2021-32814

Skytable is a NoSQL database with automated snapshots and TLS. Versions prior to 0.5.1 are vulnerable to a a directory traversal attack enabling remotely connected clients to destroy and/or manipulate critical files on the host's file system. This security bug has been patched in version 0.5.1. There are no known workarounds aside from upgrading.
Configurations

Configuration 1 (hide)

cpe:2.3:a:skytable:skytable:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2021-08-03 17:15

Updated : 2021-08-11 17:05


NVD link : CVE-2021-32814

Mitre link : CVE-2021-32814

CVE.ORG link : CVE-2021-32814


JSON object : View

Products Affected

skytable

  • skytable
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')