Metrics
Affected Vendors & Products
Tue, 14 Oct 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Fri, 19 Sep 2025 14:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Amazon
Amazon data.all |
|
CPEs | cpe:2.3:a:amazon:data.all:*:*:*:*:*:*:*:* | |
Vendors & Products |
Amazon
Amazon data.all |
Tue, 15 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Tue, 12 Nov 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sat, 09 Nov 2024 01:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Sat, 09 Nov 2024 01:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A data.all admin team member who has access to the customer-owned AWS Account where data.all is deployed may be able to extract user data from data.all application logs in data.all via CloudWatch log scanning for particular operations that interact with customer producer teams data. | |
Title | data.all admin user may access potentially sensitive data stored by producers via logs | |
Weaknesses | CWE-863 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: AMZN
Published:
Updated: 2025-10-14T19:01:19.396Z
Reserved: 2024-11-06T21:02:34.355Z
Link: CVE-2024-52314

Updated: 2024-11-12T15:14:52.881Z

Status : Modified
Published: 2024-11-09T01:15:05.863
Modified: 2025-10-14T19:15:37.033
Link: CVE-2024-52314

No data.

No data.