Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37703
HistoryOct 27, 2022 - 6:36 a.m.

Remote Code Execution (RCE)

2022-10-2706:36:31
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9
apache flume
rce
remote code execution
vulnerability
improper validations
jms source
provider url
arbitrary code executions

EPSS

0.006

Percentile

79.5%

Apache Flume is vulnerable to remote code execution. The vulnerability exists due to improper validations of jms source and provider url where the attacker can use the jms source with an unsafe provider url causing arbitrary code executions.

EPSS

0.006

Percentile

79.5%

Related for VERACODE:37703