- Description
- Apache IoTDB DataNode’s internal RPC interface for creating Trigger instances uses the uploaded Trigger JAR name to build a file path without sufficient validation. If the internal DataNode RPC port is exposed to an untrusted network, an attacker may use path traversal sequences in the JAR name to write files outside the intended Trigger installation directory. This could allow arbitrary file write with the permissions of the IoTDB process. This issue affects Apache IoTDB: from 1.3.3 before 2.0.8. Users are recommended to upgrade to version 2.0.8, which fixes the issue.
- Source
- security@apache.org
- NVD status
- Analyzed
- Products
- iotdb
CVSS 3.1
- Type
- Secondary
- Base score
- 9.8
- Impact score
- 5.9
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- CRITICAL
- security@apache.org
- CWE-284
- Hype score
- Not currently trending
Three Apache IoTDB vulnerabilities include a critical path traversal (CVE-2026-24014) and an authentication bypass. Upgrade to 2.0.8 now. #ApacheIoTDB #PathTraversal #AuthBypass #CVE #IoTSecurity #InfoSec https://t.co/nXS8OSqopr
@Daily_CyberSec
11 Jul 2026
414 Impressions
1 Retweet
4 Likes
0 Bookmarks
0 Replies
0 Quotes
Apache IoTDB CVE-2026-24012: DoS via Resource Exhaustion in Aggregation Query https://t.co/3WNW3GpVmI CVE-2026-24013: Authentication Bypass via Forged SessionID in Thrift RPC https://t.co/Q47JslRDMd CVE-2026-24014: Path Traversal [...] Arbitrary File Write https://t.co/qVVjizMfHu
@oss_security
8 Jul 2026
514 Impressions
0 Retweets
4 Likes
0 Bookmarks
0 Replies
0 Quotes
🚨*CVE* CVE-2026-24014 Apache IoTDB DataNode’s internal RPC interface for creating Trigger instances uses the uploaded Trigger JAR name to build a file path without sufficient validation. I… https://t.co/xUEMuqro5k ----- Traducción: CVE-2026-24014 La … https://t.co/utmt
@infoflowcloud
6 Jul 2026
41 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
[
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:apache:iotdb:*:*:*:*:*:*:*:*",
"matchCriteriaId": "A5DB00CF-13B9-44F8-9F24-70DFE24EB18E",
"versionEndExcluding": "2.0.8",
"versionStartIncluding": "1.3.3",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
]