Description
An S3 bucket takeover vulnerability was identified in the h2oai/h2o-3 repository. The issue involves the S3 bucket 'http://s3.amazonaws.com/h2o-training', which was found to be vulnerable to unauthorized takeover.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-17207 | An S3 bucket takeover vulnerability was identified in the h2oai/h2o-3 repository. The issue involves the S3 bucket 'http://s3.amazonaws.com/h2o-training', which was found to be vulnerable to unauthorized takeover. |
References
History
Mon, 28 Jul 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
H2o
H2o h2o |
|
| CPEs | cpe:2.3:a:h2o:h2o:3.45.0.6386:*:*:*:*:*:*:* | |
| Vendors & Products |
H2o
H2o h2o |
Status: PUBLISHED
Assigner: @huntr_ai
Published:
Updated: 2024-08-01T18:40:21.031Z
Reserved: 2024-02-12T19:24:46.278Z
Link: CVE-2024-1456
Updated: 2024-08-01T18:40:21.031Z
Status : Analyzed
Published: 2024-04-16T00:15:08.170
Modified: 2025-07-28T14:04:52.003
Link: CVE-2024-1456
No data.
OpenCVE Enrichment
Updated: 2025-07-13T11:14:22Z
Weaknesses
EUVD