wiz-sec / open-cvdb

An open project to list all publicly known cloud vulnerabilities and CSP security issues
https://cloudvulndb.org
Creative Commons Attribution 4.0 International
303 stars 61 forks source link

[Contribution] Azure HDInsight Privilege Escalations and Denial of Service Vulnerabilities #276

Closed korniko98 closed 6 months ago

korniko98 commented 6 months ago

Summary (give a brief description of the issue)

References (provide links to blogposts, etc.)

https://orca.security/resources/blog/azure-hd-insight-vulnerabilities-privilege-escalation/#h-case-2-azure-hdinsight-apache-ambari-jdbc-injection-elevation-of-privileges https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36419 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-38156