Apache Ambari: Allows authenticated metrics consumers to perform RCE
CVE-2022-45855
8HIGH
What is CVE-2022-45855?
A SpringEL injection vulnerability exists in Apache Ambari versions 2.7.0 to 2.7.6, allowing an authenticated malicious user to execute arbitrary code remotely. This flaw emphasizes the importance of applying the recommended upgrade to version 2.7.7 to mitigate potential risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Apache Ambari 2.7.0 <= 2.7.6