
Cloud Vulnerability DB
A community-led vulnerabilities database
A vulnerability (CVE-2022-34271) was discovered in the import module of Apache Atlas that allows an authenticated user to write to the web server filesystem. The vulnerability affects Apache Atlas versions ranging from 0.8.4 to 2.2.0. This security issue was initially recorded on June 22, 2022 (CVE Mitre).
The vulnerability is classified as a path traversal issue (CWE-22) in the import module of Apache Atlas. When exploited, it enables authenticated users to perform unauthorized write operations to the web server's filesystem (NVD).
The vulnerability allows authenticated users to write files to the web server's filesystem, potentially leading to unauthorized data manipulation or system compromise (Apache List).
The vulnerability requires authentication for exploitation, which somewhat limits its potential abuse. However, any authenticated user could potentially exploit this vulnerability to write to the web server's filesystem (CVE Mitre).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."