cve/2022/CVE-2022-23942.md
2024-05-25 21:48:12 +02:00

677 B

CVE-2022-23942

Description

Apache Doris, prior to 1.0.0, used a hardcoded key and IV to initialize the cipher used for ldap password, which may lead to information disclosure.

POC

Reference

No PoCs from references.

Github