Vulnerabilities (CVE)

Filtered by vendor H2database Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-14335 1 H2database 1 H2 2020-08-24 4.0 MEDIUM 6.5 MEDIUM
An issue was discovered in H2 1.4.197. Insecure handling of permissions in the backup function allows attackers to read sensitive files (outside of their permissions) via a symlink to a fake database file.