PT-2025-34294 · Apache · Hdfs

Adam Bertrand

+1

·

Published

2025-08-12

·

Updated

2025-08-22

·

CVE-2025-54460

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:S/C:N/I:C/A:P
Name of the Vulnerable Software and Affected Versions: (affected versions not specified)
Description: The vulnerability could allow an authenticated attacker with privileges to create or access publication targets of type Text File or HDFS to upload and persist files that could potentially be executed.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Unrestricted File Upload

Weakness Enumeration

Related Identifiers

BDU:2026-00074
CVE-2025-54460

Affected Products

Hdfs