Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39457
HistoryFeb 28, 2023 - 7:56 a.m.

Remote Code Execution (RCE)

2023-02-2807:56:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
remote code execution
vulnerability
apache airflow
apache sqoop
improper sanitization
libjars parameter
malicious code
security issue

EPSS

0.002

Percentile

58.0%

apache_airflow_providers_apache_sqoop is vulnerable to Remote Code Execution (RCE). The vulnerability is caused by improper sanitization in sqoop.py due to the libjars parameter which allows an attacker to upload and execute malicious code on the system.

EPSS

0.002

Percentile

58.0%