The validateAdminConfig handler in the Analytics Management Console in HPE Vertica 7.0.x prior to 7.0.2.12, 7.1.x prior to 7.1.2-12, and 7.2.x prior to 7.2.2-1 allows remote malicious users to execute arbitrary commands via the mcPort parameter, aka ZDI-CAN-3417.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
hp vertica |