CVE-2024-45198 - Insightsoftware Spark JNDI Injection Remote Code Execution

22 hours ago 1
ARTICLE AD BOX
CVE ID : CVE-2024-45198
Published : April 3, 2025, 8:15 p.m. | 42 minutes ago
Description : insightsoftware Spark JDBC 2.6.21 has a remote code execution vulnerability. Attackers can inject malicious parameters into the JDBC URL, triggering JNDI injection during the process when the JDBC Driver uses this URL to connect to the database. This can further lead to remote code execution.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article