[0day-rubbish] TigerGraph Community Edition 4.2.4 Default credentials plus GSQL TO_CSV arbitrary file write to SSH code execution (9.8)
TigerGraph Community Edition 4.2.4 default credentials and GSQL file write enable unauthenticated SSH command execution.
0day Rubbish publicly disclosed a CVSS 9.8 issue in TigerGraph Community Edition 4.2.4 combining shipped default credentials (CWE-798) with a GSQL TO_CSV arbitrary file write. The chain yields SSH command execution as the tigergraph service user (uid 1001), which owns the engine, graph data, catalog, and configuration. The advisory treats the issue as reachable without a separately created account. No CVE identifier is given in the post.
- TigerGraph Community Edition 4.2.4 ships default credentials
- GSQL TO_CSV arbitrary file write chains to SSH command execution
- CVSS 9.8; commands run as tigergraph user uid 1001
- No prior account is required beyond the shipped defaults
Posted by disclosure via Fulldisclosure on Sep 22 0day Rubbish Research Team is publicly disclosing a vulnerability in TigerGraph Community Edition 4.2.4. Type: Default credentials plus GSQL TO_CSV arbitrary file write to SSH code execution (CWE-798) CVSS: 9.8 (AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) Impact: command execution as the tigergraph service user (uid 1001), which owns the engine, graph data, catalog and configuration tree Authentication: unauthenticated (shipped default credentials)...
This source does not provide full text. Read it at seclists.org.