by @jakaba
09 Aug 2023

SQL injection in Apache Airflow MySQL provider (CVE-2023-22884) - PoC + exploit

by @jakaba
09 Aug 2023

SQL injection in Apache Airflow MySQL provider (CVE-2023-22884) - PoC + exploit

OS

Linux
LinuxOracle
7.8.*
8.8.*
7.9.*
8.10.*
8.10.*
8.4.*
8.7.*
6.10.*
6.10.*
8.6.*

Apps

A
AirflowApache
1.0.0:.*
2.0.0:.*
*.*
1.7.1.3.*
1.7.1.2.*
1.7.1.1.*
1.10.11.*
1.10.12.*
0.4.5.*
1.10.8.*
5.7.4.*
5.4.0.*
5.6.3.*
5.7.0.*
6.2.0.*
6.2.2.*
5.2.0.*
5.3.0.*
5.5.2.*
5.6.1.*

PoC video

Summary

Proof of Concept for CVE-2023-22884 that is an Apache Airflow SQL injection vulnerability.

general

Description

users/photos/clj8b3h1k16g10uoihwvzgsxi.png

@jakaba

74 posts

Total vcoins

0

Social media links

Comments (0)