intrigueio / intrigue-core

Discover Your Attack Surface!
https://core.intrigue.io
Other
1.35k stars 262 forks source link

Adding Apache Airflow vulnerability checks #360

Closed adambakalar closed 3 years ago

adambakalar commented 3 years ago

Adding vulnerability checks for the following Apache Airflow CVEs:

Jira ticket for more details: https://intriguesecurity.atlassian.net/browse/COR-104

One note:

When working on the vulnerability task for CVE-2020-17526 I tried making it work with both the NetworkService and Uri entity types, but when testing with the Uri type Core was never able to properly grab the fingerprint detail, even though when I looked up the entity itself the fingerprints were there, including the Apache Airflow fingerprint.

adambakalar commented 3 years ago

After speaking with @shpendk I pushed some changes to the vuln checks:

CVE-2020-11978:

CVE-2020-17526: