Skip to main content

CVE-2023-33264

Description

In Hazelcast through 5.0.4, 5.1 through 5.1.6, and 5.2 through 5.2.3, configuration routines don't mask passwords in the member configuration properly. This allows Hazelcast Management Center users to view some of the secrets.

NVD
Severity: MEDIUM
CVE ID: CVE-2023-33264
CVSS Score: 4.3
CVSS Metrics: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

Refrence: NVDMITRE

Proof Of Concept

miguelc49

Refrence: GitHub

miguelc49

Refrence: GitHub

miguelc49

Refrence: GitHub