Kafka Config Editor - Unauthenticated Access
Kafka Config Editor was detected and appeared to be accessible without authentication.
kafka-uiPoC 已收录
CVSS—
共找到 5 条公开漏洞记录
Kafka Config Editor was detected and appeared to be accessible without authentication.
Kafka Operation API Cluster page was detected and appeared to be accessible without authentication.
An issue discovered in provectus kafka-ui 0.4.0 through 0.7.1 allows remote attackers to execute arbitrary code via the q parameter of /api/clusters/local/topics/{topic}/messages.