Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-39570 | Hertzbeat is an open source, real-time monitoring system. Hertzbeat 1.6.0 and earlier declares a /api/monitor/{monitorId}/metric/{metricFull} endpoint to download job metrics. In the process, it executes a SQL query with user-controlled data, allowing for SQL injection. |
Tue, 03 Sep 2024 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 28 Aug 2024 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apache
Apache hertzbeat |
|
| CPEs | cpe:2.3:a:apache:hertzbeat:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Apache
Apache hertzbeat |
Tue, 20 Aug 2024 21:15:00 +0000
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-09-03T14:54:10.790Z
Reserved: 2024-07-30T14:01:33.923Z
Link: CVE-2024-42361
Updated: 2024-09-03T14:54:02.702Z
Status : Analyzed
Published: 2024-08-20T21:15:14.120
Modified: 2024-08-28T13:49:50.457
Link: CVE-2024-42361
No data.
OpenCVE Enrichment
No data.
EUVD