CVE-2023-24045
EUVD-2023-2810901.03.2023, 01:15
In Dataiku DSS 11.2.1, an attacker can download other Dataiku files that were uploaded to the myfiles section by specifying the target username in a download request.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| dataiku | data_science_studio | 𝑥 < 11.3.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration