cve/2023/CVE-2023-38889.md
2024-05-25 21:48:12 +02:00

650 B

CVE-2023-38889

Description

An issue in Alluxio v.2.9.3 and before allows an attacker to execute arbitrary code via a crafted script to the username parameter of lluxio.util.CommonUtils.getUnixGroups(java.lang.String).

POC

Reference

No PoCs from references.

Github