CVE-2018-14672
EUVD-2018-656615.08.2019, 18:15
In ClickHouse before 18.12.13, functions for loading CatBoost models allowed path traversal and reading arbitrary files through error messages.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| clickhouse | clickhouse | 𝑥 < 18.12.13 |
𝑥
= Vulnerable software versions
Ubuntu Releases