Security Advisory

CVE-2022-24450

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-02-08 01:14:48
Last updated 2024-08-03 04:13:55
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

NATS nats-server before 2.7.2 has Incorrect Access Control. Any authenticated user can obtain the privileges of the System account by misusing the "dynamically provisioned sandbox accounts" feature.