CVE-2024-51941

CVE-2024-51941: Apache Ambari: Remote Code Injection in Ambari Metrics and AMS Alerts

Vendor Apache Software Foundation
Product Apache Ambari
Weakness CWE-94 · Code injection
Published January 21, 2025
Last update September 3, 2025

CVSS base score

What the vulnerability does

Description

A remote code injection vulnerability exists in the Ambari Metrics and AMS Alerts feature, allowing authenticated users to inject and execute arbitrary code. The vulnerability occurs when processing alert definitions, where malicious input can be injected into the alert script execution path. An attacker with authenticated access can exploit this vulnerability to execute arbitrary commands on the server. The issue has been fixed in the latest versions of Ambari.

Key dates

Disclosure timeline

January 21, 2025 CVE published
September 3, 2025 Record updated