Improper access control in Data Virtualization and Data Virtualization for AWS Marketplace - CVE-2022-30570
Published: July 20, 2022
Vulnerability details
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions in the Column Based Security component. A remote user can bypass implemented security restrictions and gain read access to application information on the target system.
Affected software
Data Virtualization for AWS Marketplace
How to mitigate CVE-2022-30570
Data Virtualization for AWS Marketplace - update to 8.5.3