CVE-2023-24045
01.03.2023, 01:15
In Dataiku DSS 11.2.1, an attacker can download other Dataiku files that were uploaded to the myfiles section by specifying the target username in a download request.Enginsight
Vendor | Product | Version |
---|---|---|
dataiku | data_science_studio | 𝑥 < 11.3.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration