module
Apache Spark Unauthenticated Command Execution
| Disclosed |
|---|
| Dec 12, 2017 |
Disclosed
Dec 12, 2017
Description
This module exploits an unauthenticated command execution vulnerability in Apache Spark with standalone cluster mode through REST API.
It uses the function CreateSubmissionRequest to submit a malious java class and trigger it.
It uses the function CreateSubmissionRequest to submit a malious java class and trigger it.
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.