Hi I have explained a way to take over unsecured Apache Spark clusters, you can find whole write up here : http://codebreach.in/blog/2015/03/arbitary-code-execution-in-unsecured-apache-spark-cluster/
Here's the Exploit-db: http://www.exploit-db.com/exploits/36562/ Can i request for a CVE? Thanks Best Regards _______________________________________________ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/
