CVE-2022-32561: Medium severity wut com-server highspeed 100baselx vulnerability
Published Jun 14, 2022
·Updated
An issue was discovered in Couchbase Server before 6.6.5 and 7.x before 7.0.4. Previous mitigations for CVE-2018-15728 were found to be insufficient when it was discovered that diagnostic endpoints could still be accessed from the network.
Affected Software
2 affected components
Couchbase Couchbase Server>=5.0.0<6.6.5
Couchbase Couchbase Server>=7.0.0<7.0.4
Event History
Jun 14, 2022
CVE Published
via MITRE·04:38 PM
Data Sourced
via MITRE·04:38 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue in Couchbase Server?
The vulnerability ID for this issue in Couchbase Server is CVE-2022-32561.
2
What is the severity of CVE-2022-32561?
CVE-2022-32561 has a severity rating of medium.
3
What is the affected software version for CVE-2022-32561?
The affected software versions for CVE-2022-32561 are Couchbase Server versions between 5.0.0 and 6.6.5, and versions between 7.0.0 and 7.0.4.
4
What is the impact of CVE-2022-32561?
CVE-2022-32561 could allow unauthorized remote access to diagnostic endpoints in Couchbase Server.
5
How can I mitigate the vulnerability in Couchbase Server?
To mitigate the vulnerability in Couchbase Server, it is recommended to update to version 6.6.5 or 7.0.4, depending on the affected software version.