Talend Vulnerabilities and Affected Products
Vulnerabilities associated with esb_runtime.
Products
Clear product- Open Studio for MDM2 vulnerabilities
- Talend Administration Center2 vulnerabilities
- administration_center1 vulnerability
- esb_runtime1 vulnerability
- Talend JobServer1 vulnerability
- Talend Runtime1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2021-40684CRITICAL | Talend ESB Runtime Unauthenticated Jolokia HTTP Endpoint VulnerabilityTalend ESB Runtime in all versions from 5.1 to 7.3.1-R2021-09, 7.2.1-R2021-09, 7.1.1-R2021-09, has an unauthenticated Jolokia HTTP endpoint which allows remote access to the JMX of the runtime container, which would allow an attacker the ability to read or modify the container or software running in the container. CWE-287Sep 22, 2021 | CVSS9.1v3.1 | EPSS1.24% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |