Privilege escalation in Apache Cassandra 5.0 on an mTLS environment using MutualTlsAuthenticator allows a user with only CREATE permission to associate their own certificate identity with an arbitrary role, including a superuser role, and authenticate as that role via ADD IDENTITY. Users are recommended to upgrade to version 5.0.7+, which fixes this issue.
oryginał ENCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HApache Cassandra
APPApache5.0.0 – 5.0.7 (bez)
Powiązane podatności
Krytyczna podatność RCE w Oracle Java SE i JRockit — komponent JMX
Apache Cassandra RCE poprzez skryptowane funkcje UDF
Apache Cassandra: nieuwierzytelniony interfejs JMX/RMI umożliwia RCE
Privilege Defined With Unsafe Actions vulnerability in Apache Cassandra. An user with MODIFY permission ON ALL...
Privilege Defined With Unsafe Actions vulnerability in Apache Cassandra. An user with MODIFY permission ON ALL...