Apache.Kafka.Connect.Remote.Code.Execution

description-logoDescription

This indicates a Remote Code Execution attack attempt against Apache Kafka.
The vulnerability is due to insufficient sanitizing requests to connector configuration file. Successfully exploited the vulnerability can lead to remote code execution on affect system.

affected-products-logoAffected Products

Apache Kafka 3.0.0

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems

recomended-action-logoRecommended Actions

Upgrade to the latest version, available from the website: https://kafka.apache.org/downloads

Version Updates

Date Version Detail
2023-06-01 0.00349

CVE References

CVE-2023-25194