CVE-2023-34468

Scores

EPSS

0.772medium77.2%
0%20%40%60%80%100%

Percentile: 77.2%

CVSS

8.8high3.x
0246810

CVSS Score: 8.8/10

All CVSS Scores

CVSS 3.x
8.8

Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Description

The DBCPConnectionPool and HikariCPConnectionPool Controller Services in Apache NiFi 0.0.2 through 1.21.0 allow an authenticated and authorized user to configure a Database URL with the H2 driver that enables custom code execution.

The resolution validates the Database URL and rejects H2 JDBC locations.

You are recommended to upgrade to version 1.22.0 or later which fixes this issue.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

nvd

CWEs

CWE-94

Related Vulnerabilities

Exploits

Exploit ID: CVE-2023-34468

Source: github-poc

URL: https://github.com/shoucheng3/asf__nifi_CVE-2023-34468_1-21-00

Vulnerable Software (1)

Type: Configuration

Vendor: apache

Product: nifi

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:apache:nifi:*:*:*:*:*:*:*:*",      "versionEndExcluding": "1.22.0",      "versionStartIncluding": "0.0.2",      "vulnerable": true    }  ], ...

Source: nvd