CVE-2024-38346

CWE-94Code Injection3 documents3 sources
Severity
9.8CRITICAL
EPSS
2.2%
top 15.46%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 5

Description

The CloudStack cluster service runs on unauthenticated port (default 9090) that can be misused to run arbitrary commands on targeted hypervisors and CloudStack management server hosts. Some of these commands were found to have command injection vulnerabilities that can result in arbitrary code execution via agents on the hosts that may run as a privileged user. An attacker that can reach the cluster service on the unauthenticated port (default 9090), can exploit this to perform remote code execu

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

CVEListV5apache_software_foundation/apache_cloudstack4.0.04.18.2.0+1
NVDapache/cloudstack4.0.04.18.2.1+1

🔴Vulnerability Details

2
CVEList
Apache CloudStack: Unauthenticated cluster service port leads to remote execution2024-07-05
GHSA
GHSA-7g4v-8cvx-gp5q: The CloudStack cluster service runs on unauthenticated port (default 9090) that can be misused to run arbitrary commands on targeted hypervisors and C2024-07-05
CVE-2024-38346 (CRITICAL CVSS 9.8) | The CloudStack cluster service runs | cvebase.io