CVE-2022-32561

3 documents3 sources
Severity
4.9MEDIUM
EPSS
0.3%
top 48.72%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 14
Latest updateJun 15

Description

An issue was discovered in Couchbase Server before 6.6.5 and 7.x before 7.0.4. Previous mitigations for CVE-2018-15728 were found to be insufficient when it was discovered that diagnostic endpoints could still be accessed from the network.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:NExploitability: 1.2 | Impact: 3.6

Affected Packages1 packages

NVDcouchbase/couchbase_server5.0.06.6.5+1

🔴Vulnerability Details

2
GHSA
GHSA-rw6f-4v5q-5q53: An issue was discovered in Couchbase Server before 62022-06-15
CVEList
CVE-2022-32561: An issue was discovered in Couchbase Server before 62022-06-14
CVE-2022-32561 (MEDIUM CVSS 4.9) | An issue was discovered in Couchbas | cvebase.io