The Web Frontend of KNIME Business Hub before 1.4.0 allows an unauthenticated remote attacker to access internals about the application such as versions, host names, or IP addresses. No personal information or application data was exposed.
References
Link | Resource |
---|---|
https://www.knime.com/security/advisories#CVE-2023-2541 | Vendor Advisory |
https://zigrin.com/advisories/knime-business-hub-sensitive-information-disclosure/ | Third Party Advisory |
Configurations
History
No history.
Information
Published : 2023-06-07 09:15
Updated : 2024-01-09 03:05
NVD link : CVE-2023-2541
Mitre link : CVE-2023-2541
CVE.ORG link : CVE-2023-2541
JSON object : View
Products Affected
knime
- business_hub
CWE