Description
A vulnerability in import module of Apache Atlas allows an authenticated user to write to web server filesystem. This issue affects Apache Atlas versions from 0.8.4 to 2.2.0.
Remediation
References
https://lists.apache.org/thread/0rqvcxo6brmos9w3lzfsdn2lsmlblpw3
Related Vulnerabilities
CVE-2023-32070 Vulnerability in maven package org.xwiki.platform:xwiki-core-rendering-api
CVE-2023-24998 Vulnerability in maven package org.apache.tomcat:tomcat-util
CVE-2021-31409 Vulnerability in maven package com.vaadin:vaadin-compatibility-server
CVE-2018-11765 Vulnerability in maven package org.apache.hadoop:hadoop-common
CVE-2023-36468 Vulnerability in maven package org.xwiki.platform:xwiki-platform-core