RedTeam Recipes

Home

About

contact

services

hall of fame

questions

trusted partners

privacy policy

loading..
CVEApacheCVE-2021-38294

CVE-2021-38294: Apache Storm Nimbus Command Injection

By Zeyad Azima Introduction#CVE-2021-38294 is a Command Injection vulnerability that affects Nimbus server in apache storm in getTopologyHistory services, A successful crafted request to Nimbus server will result in exploitation for this vulnerability will lead to execute malicious command & takeover the server. The affected versions are 1.x prior to 1..

Read more