Shell Command Execution Vulnerability in ClickHouse by Altinity
CVE-2025-52969

2.8LOW

Key Information:

Vendor

Clickhouse

Vendor
CVE Published:
23 June 2025

What is CVE-2025-52969?

In ClickHouse version 25.7.1.557, a vulnerability allows low-privileged users to execute shell commands by querying Executable() tables established by higher-privileged users. Although the system restricts the CREATE TABLE permission, it lacks proper access control measures to prevent low-privileged users from accessing existing Executable tables. If an attacker can modify the script associated with the Executable() engine via writable paths, they could run malicious commands in the context of the ClickHouse server, leading to potential privilege escalation and unauthorized execution of code. The vendor suggests that such command executions by low-privileged users are expected behavior.

Affected Version(s)

ClickHouse 25.7.1.557

References

CVSS V3.1

Score:
2.8
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.