The default credentials for the setup HSQL database (HSQLDB) for FileCatalyst Workflow are published in a vendor knowledgebase article. Misuse of these credentials could lead to a compromise of confidentiality, integrity, or availability of the software.
The HSQLDB is only included to facilitate installation, has been deprecated, and is not intended for production use per vendor guides. However, users who have not configured FileCatalyst Workflow to use an alternative database per recommendations are vulnerable to attack from any source that can reach the HSQLDB.
References
Link | Resource |
---|---|
https://www.fortra.com/security/advisories/product-security/fi-2024-011 | Vendor Advisory |
Configurations
History
30 Aug 2024, 14:11
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-798 | |
Summary |
|
|
First Time |
Fortra
Fortra filecatalyst Workflow |
|
References | () https://www.fortra.com/security/advisories/product-security/fi-2024-011 - Vendor Advisory | |
CPE | cpe:2.3:a:fortra:filecatalyst_workflow:*:*:*:*:*:*:*:* |
27 Aug 2024, 15:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-08-27 15:15
Updated : 2024-08-30 14:11
NVD link : CVE-2024-6633
Mitre link : CVE-2024-6633
CVE.ORG link : CVE-2024-6633
JSON object : View
Products Affected
fortra
- filecatalyst_workflow