A code injection vulnerability exists in the Ambari Alert Definition feature, allowing authenticated users to inject and execute arbitrary shell commands. The vulnerability arises when defining alert scripts, where the script filename field is executed using `sh -c`. An attacker with authenticated access can exploit this vulnerability to inject malicious commands, leading to remote code execution on the server. The issue has been fixed in the latest versions of Ambari.
History

Wed, 22 Jan 2025 15:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 21 Jan 2025 23:45:00 +0000

Type Values Removed Values Added
References

Tue, 21 Jan 2025 21:30:00 +0000

Type Values Removed Values Added
Description A code injection vulnerability exists in the Ambari Alert Definition feature, allowing authenticated users to inject and execute arbitrary shell commands. The vulnerability arises when defining alert scripts, where the script filename field is executed using `sh -c`. An attacker with authenticated access can exploit this vulnerability to inject malicious commands, leading to remote code execution on the server. The issue has been fixed in the latest versions of Ambari.
Title Apache Ambari: Code Injection Vulnerability in Ambari Alert Definition
Weaknesses CWE-77
References

cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published:

Updated: 2025-02-03T08:22:56.454Z

Reserved: 2025-01-13T14:43:54.173Z

Link: CVE-2025-23196

cve-icon Vulnrichment

Updated: 2025-01-21T23:02:44.790Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-01-21T22:15:12.987

Modified: 2025-01-22T15:15:15.390

Link: CVE-2025-23196

cve-icon Redhat

No data.