CVE-2022-23942
CVE-2022-23942 is a high-severity vulnerability in Apache Doris with a CVSS 3.x base score of 7.5. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-798.
Key facts
- Severity: High (CVSS 3.x base score 7.5)
- CVSS v2: 5.0
- EPSS exploit prediction: 3% (88th percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-798
- Affected product: Apache Doris
- Published:
- Last modified:
Description
Apache Doris, prior to 1.0.0, used a hardcoded key and IV to initialize the cipher used for ldap password, which may lead to information disclosure.
Frequently asked questions
- What is CVE-2022-23942?
- Apache Doris, prior to 1.0.0, used a hardcoded key and IV to initialize the cipher used for ldap password, which may lead to information disclosure.
- How severe is CVE-2022-23942?
- CVE-2022-23942 has a CVSS 3.x base score of 7.5, rated high severity. It is exploitable over network with low attack complexity, requires no privileges and no user interaction. Impact on confidentiality is high, integrity none, and availability none.
- Is CVE-2022-23942 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 3% (88th percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2022-23942?
- CVE-2022-23942 affects Apache Doris. See the affected-products list for the exact vulnerable versions.
- How do I fix CVE-2022-23942?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround. Given its high severity, prioritise patching exposed systems.
- When was CVE-2022-23942 published?
- CVE-2022-23942 was published on 2022-04-26 and last updated on 2026-06-17.
References
- http://www.openwall.com/lists/oss-security/2022/04/26/2
- http://www.openwall.com/lists/oss-security/2022/04/26/3
- https://lists.apache.org/thread/com2dyzp3bn2rdrotry90q2zzord4tvt
Affected products (1)
- cpe:2.3:a:apache:doris:*:*:*:*:*:*:*:*
More vulnerabilities in Apache Doris
- CVE-2024-27438 — Critical (CVSS 9.8): Download of Code Without Integrity Check vulnerability in Apache Doris. The jdbc driver files used for JDBC catalog is…
- CVE-2023-41313 — Critical (CVSS 9.8): The authentication method in Apache Doris versions before 2.0.0 was vulnerable to timing attacks. Users are recommended…
- CVE-2026-58319 — Critical (CVSS 9.1): Certain Apache Doris FE HTTP REST administrative APIs were accessible without proper authentication. An unauthenticated…
- CVE-2023-41314 — High (CVSS 8.2): The api /api/snapshot and /api/get_log_file would allow unauthenticated access. It could allow a DoS attack or get…
- CVE-2024-48019 — Medium (CVSS 5.4): Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), Files or Directories Accessible to…
- CVE-2024-26307 — Medium (CVSS 5.3): Possible race condition vulnerability in Apache Doris. Some of code using `chmod()` method. This method run the risk of…
All CVEs affecting Apache Doris →
Other CWE-798 (Use of Hard-coded Credentials) vulnerabilities
- CVE-2026-18452 — Critical (CVSS 10.0): DMS+ (Non-Mobile) developed by Rich Source has a Use of Hard-coded Credentials vulnerability. Unauthenticated remote…
- CVE-2026-45336 — Critical (CVSS 10.0): HireFlow is a web-based interview management system for managing candidates, scheduling interviews, and tracking hiring…
- CVE-2026-13768 — Critical (CVSS 10.0): Gardyn devices expose a privileged iothubowner key. Access to this key will allow a malicious user to invoke an IoTHub…
- CVE-2026-45631 — Critical (CVSS 10.0): Dokploy is a free, self-hostable Platform as a Service (PaaS). From 0.27.0 to before 0.29.3, a hardcoded…
- CVE-2026-22769 — Critical (CVSS 10.0): Dell RecoverPoint for Virtual Machines, versions prior to 6.0.3.1 HF1, contain a hardcoded credential vulnerability.…
- CVE-2025-42890 — Critical (CVSS 10.0): SQL Anywhere Monitor (Non-GUI) baked credentials into the code,exposing the resources or functionality to unintended…
Browse all CWE-798 (Use of Hard-coded Credentials) vulnerabilities →