Dremio Corporation
First CVE: Apr 21, 2025Active for: 1 year
1
CVEs Published
Bottom 1%
1.0
Avg CVEs / Year
Bottom 1%
8.4
Avg CVSS Score
Higher Avg CVSS Score than 93% of tracked CNAs
0.0%
In CISA KEV
Bottom 1%
Self-Reporting Analysis
Of all the CVEs published by Dremio Corporation as a CNA, 0.0% affect products that Dremio Corporation develops as a vendor.
100.0%
Self-reported: 0Third-party: 1
Of all the CVEs published that affect products developed by Dremio Corporation, 0.0% are self-published by Dremio Corporation as a CNA.
100.0%
Self-published: 0Published by other CNAs: 1
Trends Over Time
The number and severity of CVEs published by Dremio Corporation over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 21, 2025
15 months ago
Most Recent CVE
Apr 21, 2025
460 days ago
Top CVEs
All CVEs published by Dremio Corporation as a CNA, regardless of affected vendor or product.
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-2298HIGH An improper authorization vulnerability in Dremio Software allows authenticated users to delete arbitrary files that the system has access to, including system files and files stor | Apr 21, 2025 | 8.4 | 23 | NO | NO |
CVE Severity & Scoring
Severity distribution of CVEs published by this CNA1 CVEs
100%
Severity distribution among all CVEs352,427 CVEs
45%
40%
11%
High
Attack Vector
Local0 (0.0%)
Network1 (100.0%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low1 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None1 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low1 (100.0%)
High0 (0.0%)
None0 (0.0%)
Unknown0 (0.0%)
Exploit Exposure
Signals from CVEs in this cna scope (1 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
An overview of all social media posts that mention a CVE ID published by Dremio Corporation as a CNA.
Media Mentions
Media articles that mention a CVE ID published by Dremio Corporation as a CNA — matched by CVE ID, not by organization name.