CVE-2023-38889
15.08.2023, 17:15
An issue in Alluxio v.2.9.3 and before allows an attacker to execute arbitrary code via a crafted script to the username parameter of lluxio.util.CommonUtils.getUnixGroups(java.lang.String).
Vendor | Product | Version |
---|---|---|
alluxio | alluxio | 𝑥 ≤ 2.9.3 |
𝑥
= Vulnerable software versions