Microsoft Azure HDInsight has been identified to have its third-party Apache Hadoop, Kafka, and Spark services affected by three security flaws, which stem from Apache Ambari and Oozie software and have already been remediated by Microsoft in updates issued in October, The Hacker News reports.
Threat actors could leverage eight cross-site scripting vulnerabilities impacting the Microsoft Azure HDInsight analytics service to facilitate various malicious activities, including session hijacking, data compromise, and malware delivery, The Hacker News reports.
New Azure Flaw Super FabriXss Enables Remote Code Execution Attacks infosecurity-magazine.com - get the latest breaking news, showbiz & celebrity photos, sport news & rumours, viral videos and top stories from infosecurity-magazine.com Daily Mail and Mail on Sunday newspapers.