First published: Fri Apr 18 2025(Updated: )
A vulnerability classified as critical has been found in baseweb JSite 1.0. This affects an unknown part of the file /druid/index.html of the component Apache Druid Monitoring Console. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apache Druid Monitoring Console |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-3790 is classified as a critical severity vulnerability.
CVE-2025-3790 affects the Apache Druid Monitoring Console, specifically the file /druid/index.html.
To fix CVE-2025-3790, you should implement proper access controls and update to the latest version of Apache Druid Monitoring Console.
Yes, CVE-2025-3790 can be exploited remotely due to improper access controls.
CVE-2025-3790 is an access control vulnerability.