Vulnerability Description
Improper Authentication vulnerability in Apache Software Foundation Apache Accumulo. This issue affects Apache Accumulo: 2.1.0. Accumulo 2.1.0 contains a defect in the user authentication process that may succeed when invalid credentials are provided. Users are advised to upgrade to 2.1.1.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apache | Accumulo | 2.1.0 |
Related Weaknesses (CWE)
References
- https://accumulo.apache.org/release/accumulo-2.1.1/Release Notes
- https://lists.apache.org/thread/syy6jftvy9l6tlhn33o0rzwhh4rd0z4tMailing ListVendor Advisory
- https://accumulo.apache.org/release/accumulo-2.1.1/Release Notes
- https://lists.apache.org/thread/syy6jftvy9l6tlhn33o0rzwhh4rd0z4tMailing ListVendor Advisory
FAQ
What is CVE-2023-34340?
CVE-2023-34340 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Improper Authentication vulnerability in Apache Software Foundation Apache Accumulo. This issue affects Apache Accumulo: 2.1.0. Accumulo 2.1.0 contains a defect in the user authentication process tha...
How severe is CVE-2023-34340?
CVE-2023-34340 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2023-34340?
Check the references section above for vendor advisories and patch information. Affected products include: Apache Accumulo.