NA

CVE-2022-25168

Published: 04/08/2022 Updated: 26/06/2023
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A flaw was found in the hadoop-common package. This flaw allows an malicious user to benefit from command injection using the org.apache.hadoop.fs.FileUtil.unTarUsingTar function.A flaw was found in the hadoop-common package. This flaw allows an malicious user to benefit from command injection using the org.apache.hadoop.fs.FileUtil.unTarUsingTar function.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache hadoop

Vendor Advisories

A flaw was found in the hadoop-common package This flaw allows an attacker to benefit from command injection using the orgapachehadoopfsFileUtilunTarUsingTar functionA flaw was found in the hadoop-common package This flaw allows an attacker to benefit from command injection using the orgapachehadoopfsFileUtilunTarUsingTar function ...