logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2023-28480

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2023-28480

Description:
An issue was discovered in Tigergraph Enterprise 3.7.0. The TigerGraph platform allows users to define new User Defined Functions (UDFs) from C/C++ code. To support this functionality TigerGraph allows users to upload custom C/C++ code which is then compiled and installed into the platform. An attacker who has filesystem access on a remote TigerGraph system can alter the behavior of the database against the will of the database administrator; thus effectively bypassing the built in RBAC controls.
Last updated date:
08/18/2023
Type:
exploit
Confidence:
HIGH
Date of publishing:
08/18/2023
Reference url to background

https://neo4j.com/security/cve-2023-28480/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2024

Privacy Policy