CVE-2020-13922
11.01.2021, 10:15
Versions of Apache DolphinScheduler prior to 1.3.2 allowed an ordinary user under any tenant to override another users password through the API interface.Enginsight
Vendor | Product | Version |
---|---|---|
apache | dolphinscheduler | 1.2.0 |
apache | dolphinscheduler | 1.2.1 |
apache | dolphinscheduler | 1.3.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration