CVE-2019-13348: High severity knowage vulnerability
Published Aug 28, 2019
·Updated
In Knowage through 6.1.1, an authenticated user who accesses the datasources page will gain access to any data source credentials in cleartext, which includes databases.
Affected Software
1 affected component
eng Knowage<6.4
Event History
Aug 28, 2019
CVE Published
via MITRE·03:46 PM
Data Sourced
via MITRE·03:46 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2019-13348.
2
What is the severity level of CVE-2019-13348?
CVE-2019-13348 has a severity level of high (8.8).
3
How can an authenticated user exploit CVE-2019-13348?
An authenticated user can exploit CVE-2019-13348 by accessing the datasources page and gaining access to data source credentials in cleartext.
4
What version of Knowage is affected by CVE-2019-13348?
Knowage versions up to and exclusive of 6.4 are affected by CVE-2019-13348.
5
Is there a fix available for CVE-2019-13348?
There is currently no information available about a fix for CVE-2019-13348. It is recommended to follow the provided reference for updates.