Lucene search

K
osvGoogleOSV:CVE-2022-45855
HistoryJul 12, 2023 - 10:15 a.m.

CVE-2022-45855

2023-07-1210:15:09
Google
osv.dev
3
apache ambari
springel injection
vulnerability
upgrade

8.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

29.0%

SpringEL injection in the metrics source in Apache Ambari version 2.7.0 to 2.7.6 allows a malicious authenticated user to execute arbitrary code remotely.Β Users are recommended to upgrade to 2.7.7.

8.1 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

29.0%

Related for OSV:CVE-2022-45855