rce-potential

1 article
sort: new top best
clear filter
0 6/10

A Local File Inclusion (LFI) vulnerability was discovered in Apache Drill through improper handling of file paths in the query interface, allowing an attacker to read arbitrary files from the server by manipulating the dfs storage plugin configuration to access sensitive files like /etc/passwd.

Apache Drill HackerOne Jobert Abma Gujjuboy10x00 Shodan crt.sh
medium.com · devanshbatham/Awesome-Bugbounty-Writeups · 23 hours ago · details