CVE Database
/

CVE-2023-50379

Back to search

CVE-2023-50379

Published: Feb 27, 2024

Modified: Feb 13, 2025

PUBLISHED

Description

Malicious code injection in Apache Ambari in prior to 2.7.8. Users are recommended to upgrade to version 2.7.8, which fixes this issue. Impact: A Cluster Operator can manipulate the request by adding a malicious code injection and gain a root over the cluster main host.

VendorProductVersions

Apache Software Foundation

Apache Ambari

affected
2.7.0 - <= 2.7.7

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now