Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36016
HistoryJun 16, 2022 - 8:11 a.m.

OS Command Injection

2022-06-1608:11:57
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
15

0.001 Low

EPSS

Percentile

48.7%

Apache NiFi and Apache NiFi Registry are vulnerable to os command injection. The vulnerability exists because the ShellUserGroupProvider doesn’t properly neutralizes group resolution command elements which allows an attacker to inject and execute arbitrary OS commands on Linux and MacOS platforms.

0.001 Low

EPSS

Percentile

48.7%

Related for VERACODE:36016