« Volver al listado

CVE-2025-2402

Estado: AnalizadaAlta (8.8)—

A hard-coded, non-random password for the object store (minio) of KNIME Business Hub in all versions except the ones listed below allows an unauthenticated remote attacker in possession of the password to read and manipulate swapped jobs or read and manipulate in- and output data of active jobs. It is also possible to cause a denial-of-service of most functionality of KNIME Business Hub by writing large amounts of data to the object store directly.

There are no viable workarounds therefore we strongly recommend to update to one of the following versions of KNIME Business Hub:

Detalles técnicos trazas, registros y código del informe original
  *  1.13.2 or later

  *  1.12.3 or later

  *  1.11.3 or later

  *  1.10.3 or later

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

🎯 Técnicas ATT&CK

Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.

Acceso remoto sin autenticación (AV:N/PR:N/UI:N) a servicio expuesto (MinIO). Permite lectura de datos (T1005), manipulación de trabajos/datos (T1565) y denegación de servicio (T1499) mediante escritura masiva.

Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.

🛡️ Mitigaciones ATT&CK que cubren estas técnicas

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2025-2402",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2025-2402",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "yes"
            },
            {
              "technicalImpact": "partial"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2025-03-31T12:50:01.777131Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 8.6,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:H",
          "integrityImpact": "LOW",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "LOW"
        },
        "impactScore": 4.7,
        "exploitabilityScore": 3.9
      }
    ],
    "cvssMetricV40": [
      {
        "type": "Secondary",
        "source": "security@knime.com",
        "cvssData": {
          "Safety": "NOT_DEFINED",
          "version": "4.0",
          "Recovery": "USER",
          "baseScore": 8.8,
          "Automatable": "YES",
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "valueDensity": "CONCENTRATED",
          "vectorString": "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:H/SC:L/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:U/V:C/RE:M/U:Amber",
          "exploitMaturity": "NOT_DEFINED",
          "providerUrgency": "AMBER",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "attackRequirements": "NONE",
          "privilegesRequired": "NONE",
          "subIntegrityImpact": "LOW",
          "vulnIntegrityImpact": "LOW",
          "integrityRequirement": "NOT_DEFINED",
          "modifiedAttackVector": "NOT_DEFINED",
          "subAvailabilityImpact": "NONE",
          "vulnAvailabilityImpact": "HIGH",
          "availabilityRequirement": "NOT_DEFINED",
          "modifiedUserInteraction": "NOT_DEFINED",
          "modifiedAttackComplexity": "NOT_DEFINED",
          "subConfidentialityImpact": "LOW",
          "vulnConfidentialityImpact": "LOW",
          "confidentialityRequirement": "NOT_DEFINED",
          "modifiedAttackRequirements": "NOT_DEFINED",
          "modifiedPrivilegesRequired": "NOT_DEFINED",
          "modifiedSubIntegrityImpact": "NOT_DEFINED",
          "modifiedVulnIntegrityImpact": "NOT_DEFINED",
          "vulnerabilityResponseEffort": "MODERATE",
          "modifiedSubAvailabilityImpact": "NOT_DEFINED",
          "modifiedVulnAvailabilityImpact": "NOT_DEFINED",
          "modifiedSubConfidentialityImpact": "NOT_DEFINED",
          "modifiedVulnConfidentialityImpact": "NOT_DEFINED"
        }
      }
    ]
  },
  "affected": [
    {
      "source": "security@knime.com",
      "affectedData": [
        {
          "vendor": "KNIME",
          "modules": [
            "object store"
          ],
          "product": "KNIME Business Hub",
          "versions": [
            {
              "status": "affected",
              "version": "1.13.0",
              "lessThan": "1.13.2",
              "versionType": "semver"
            },
            {
              "status": "affected",
              "version": "1.12.0",
              "lessThan": "1.12.3",
              "versionType": "semver"
            },
            {
              "status": "affected",
              "version": "1.11.0",
              "lessThan": "1.11.3",
              "versionType": "semver"
            },
            {
              "status": "affected",
              "version": "0",
              "lessThan": "1.10.3",
              "versionType": "semver"
            }
          ],
          "defaultStatus": "unaffected"
        }
      ]
    }
  ],
  "published": "2025-03-31T07:15:18.280",
  "references": [
    {
      "url": "https://www.knime.com/security/advisories#CVE-2025-2402",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "security@knime.com"
    },
    {
      "url": "https://github.com/advisories/GHSA-v5p7-3387-gpmg",
      "tags": [
        "Third Party Advisory"
      ],
      "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0"
    }
  ],
  "vulnStatus": "Analyzed",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "security@knime.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-259"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "A hard-coded, non-random password for the object store (minio) of KNIME Business Hub in all versions except the ones listed below allows an unauthenticated remote attacker in possession of the password to read and manipulate swapped jobs or read and manipulate in- and output data of active jobs. It is also possible to cause a denial-of-service of most functionality of KNIME Business Hub by writing large amounts of data to the object store directly. \n\n\n\nThere are no viable workarounds therefore we strongly recommend to update to one of the following versions of KNIME Business Hub: \n\n\n\n  *  1.13.2 or later \n\n\n\n\n\n\n  *  1.12.3 or later \n\n\n\n\n\n\n  *  1.11.3 or later \n\n\n\n\n\n\n  *  1.10.3 or later"
    },
    {
      "lang": "es",
      "value": "Una contraseña no aleatoria y fijada en el código para el almacén de objetos (minio) de KNIME Business Hub, en todas las versiones excepto las que se indican a continuación, permite que un atacante remoto no autenticado que la posea lea y manipule trabajos intercambiados o lea y manipule datos de entrada y salida de trabajos activos. También es posible provocar una denegación de servicio en la mayoría de las funciones de KNIME Business Hub al escribir grandes cantidades de datos directamente en el almacén de objetos. No existen workarounds viables, por lo que recomendamos encarecidamente actualizar a una de las siguientes versiones de KNIME Business Hub: * 1.13.2 o posterior * 1.12.3 o posterior * 1.11.3 o posterior * 1.10.3 o posterior"
    }
  ],
  "lastModified": "2026-06-17T09:06:57.637",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:knime:business_hub:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "81D9C268-C37C-4D91-A5B5-1E98DCA04B79",
              "versionEndExcluding": "1.10.3"
            },
            {
              "criteria": "cpe:2.3:a:knime:business_hub:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7A6E2E3C-C4A6-4AEB-B9EE-7DC506CA81DC",
              "versionEndExcluding": "1.11.3",
              "versionStartIncluding": "1.11.0"
            },
            {
              "criteria": "cpe:2.3:a:knime:business_hub:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "CC9369E4-3314-4D76-B7FF-F53A098A7669",
              "versionEndExcluding": "1.12.3",
              "versionStartIncluding": "1.12.0"
            },
            {
              "criteria": "cpe:2.3:a:knime:business_hub:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "190F38D7-CE39-42A9-848B-910E39C627A6",
              "versionEndExcluding": "1.13.2",
              "versionStartIncluding": "1.13.0"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security@knime.com"
}