CData Vulnerabilities and Affected Products
Vulnerabilities associated with Sync.
Products
Clear product- API Server2 vulnerabilities
- api_server1 vulnerability
- Arc1 vulnerability
- Connect1 vulnerability
- Sync1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2024-31851HIGH | CData Sync < 23.4.8843 - Path TraversalA path traversal vulnerability exists in the Java version of CData Sync < 23.4.8843 when running using the embedded Jetty server, which could allow an unauthenticated remote attacker to gain access to sensitive information and perform limited actions. | CVSS8.6v3.1 | EPSS2.89% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |