Login check vulnerability by session Id
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 1.3%
exploitation probability
1.3%top 31% of all CVEs
observed exploitation
nono source reports it
Apache IoTDB version 0.13.0 is vulnerable by session id attack. Users should upgrade to version 0.13.1 which addresses this issue.
Affected products
Apache Software Foundation · Apache IoTDB