Skip to content
Noroxi

dataiku records

5 published records for vendor dataiku.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

5 records
  • Dataiku DSS before 11.4.5 and 12.4.1 has Incorrect Access Control that could lead to a full authentication bypass.

    CriticalCVSS 9.8No exploitEPSS 1%

    dataiku · data science studioJan 8, 2024

  • CVE-2020-8817
    32Monitor

    Dataiku DSS before 6.0.5 allows attackers write access to the project to modify the "Created by" metadata.

    HighCVSS 8.1No exploitEPSS 1%

    dataiku · data science studioSep 14, 2020

  • In Dataiku DSS 11.2.1, an attacker can download other Dataiku files that were uploaded to the myfiles section by specifying the target usern

    MediumCVSS 6.5No exploitEPSS 1%

    dataiku · data science studioFeb 28, 2023

  • The REST API in Dataiku DSS before 4.2.3 allows remote attackers to obtain sensitive information (i.e., determine if a username is valid) be

    MediumCVSS 5.3Proof of conceptEPSS 2%

    dataiku · data science studioMay 28, 2018

  • In Dataiku DSS before 8.0.6, insufficient access control in the Jupyter notebooks integration allows users (who have coding permissions) to

    MediumCVSS 5.4No exploitEPSS 1%

    dataiku · data science studioFeb 28, 2021