CVE-2017-9797
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 1.4%
exploitation probability
1.4%top 30% of all CVEs
observed exploitation
nono source reports it
When an Apache Geode cluster before v1.2.1 is operating in secure mode, an unauthenticated client can enter multi-user authentication mode and send metadata messages. These metadata operations could leak information about application data types. In addition, an attacker could perform a denial of service attack on the cluster.
Affected products
Apache Software Foundation · Apache Geode