当前位置:网站首页>Fix vulnerability - mysql, ES
Fix vulnerability - mysql, ES
2022-07-05 18:06:00 【Long Cheng Leo】
One 、 Vulnerability description
Use Green Alliance Scan for leaks :
1、Elasticsearch Unauthorized access
2、mysql server Security vulnerabilities 、 Component security vulnerability

Two 、 Vulnerability investigation
Through the website National Information Security Vulnerability Database View specific vulnerability solutions
1、Elasticsearch You need to add a security authentication plug-in http-basic
because es Version together , The use of http-basic It's not the same way , With my es 6.8.23 For example :
http-basic Download package :
link :https://pan.baidu.com/s/1E_ckdsjnlmUszsSFq_i1AA
Extraction code :zbfn

2、mysql The version of is too low , Change to a higher version
8.0.28 This exists in previous versions CVE-2021-22570 Loophole , at present mysql The latest is 8.0.29 edition , So upgrade mysql To 29 On the version
边栏推荐
- Binder开辟线程数过多导致主线程ANR异常
- GFS distributed file system
- Sophon base 3.1 launched mlops function to provide wings for the operation of enterprise AI capabilities
- Operation before or after Teamcenter message registration
- Isprs2022 / Cloud Detection: Cloud Detection with Boundary nets Boundary Networks Based Cloud Detection
- About Statistical Power(统计功效)
- Leetcode daily practice: rotating arrays
- “12306” 的架构到底有多牛逼?
- VC编程入门浅谈「建议收藏」
- Sophon Base 3.1 推出MLOps功能,为企业AI能力运营插上翅膀
猜你喜欢

Leetcode daily question: merge two ordered arrays

Career advancement Guide: recommended books for people in big factories

Star Ring Technology launched transwarp Navier, a data element circulation platform, to help enterprises achieve secure data circulation and collaboration under privacy protection

ConvMAE(2022-05)

Zabbix

Find the first k small element select_ k

破解湖+仓混合架构顽疾,星环科技推出自主可控云原生湖仓一体平台

第十届全球云计算大会 | 华云数据荣获“2013-2022十周年特别贡献奖”

Cmake tutorial Step2 (add Library)

How awesome is the architecture of "12306"?
随机推荐
[TestLink] testlink1.9.18 solutions to common problems
从类生成XML架构
模拟百囚徒问题
RSE2020/云检测:基于弱监督深度学习的高分辨率遥感图像精确云检测
在一台服务器上部署多个EasyCVR出现报错“Press any to exit”,如何解决?
matlab内建函数怎么不同颜色,matlab分段函数不同颜色绘图
登录连接 CDB 和 PDB
MATLAB中print函数使用
Binder开辟线程数过多导致主线程ANR异常
Zabbix
南京大学:新时代数字化人才培养方案探讨
Sophon CE Community Edition is online, and free get is a lightweight, easy-to-use, efficient and intelligent data analysis tool
EasyCVR平台通过接口编辑通道出现报错“ID不能为空”,是什么原因?
第十一届中国云计算标准和应用大会 | 华云数据成为全国信标委云计算标准工作组云迁移专题组副组长单位副组长单位
U-Net: Convolutional Networks for Biomedical Images Segmentation
nano的CAN通信
Teamcenter 消息注册前操作或後操作
Generate classes from XML schema
ConvMAE(2022-05)
GFS分布式文件系统