CVE-2022-39337
22.12.2023, 15:15
Hertzbeat is an open source, real-time monitoring system with custom-monitoring, high performance cluster, prometheus-like and agentless. Hertzbeat versions 1.20 and prior have a permission bypass vulnerability. System authentication can be bypassed and invoke interfaces without authorization. Version 1.2.1 contains a patch for this issue.Enginsight
Vendor | Product | Version |
---|---|---|
apache | hertzbeat | 𝑥 < 1.2.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References