CVE-2021-35943
Couchbase Server 6.5.x and 6.6.x through 6.6.2 has Incorrect Access Control. Externally managed users are not prevented
Couchbase Server 6.5.x and 6.6.x through 6.6.2 has Incorrect Access Control. Externally managed users are not prevented from using an empty password, per RFC4513.
CRITICAL · CVSS 9.8
EPSS 0.00507
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0