Kai Ole Hartwig

name of the term: RCE
descriptions of the term:

Definition

Definition. RCE (Remote Code Execution) describes vulnerabilities that let an attacker run their own code on a system from afar. Often no login is required. Typical causes are unsafe deserialisation, template injection or flawed file uploads.

Why it matters. RCE is the most severe class of web vulnerability. The attacker runs with the rights of the PHP process, reads secrets and database credentials and moves on through the cluster. In Kubernetes, a read-only file system, non-root containers and NetworkPolicies limit the damage. They do not replace the patch.

Example. A PHP library deserialises user input without checks. A crafted request starts a shell in the container. Once the CVE is published, the race between patch and exploit begins.

Related. CVE, CVSS, CISA KEV, Container Escape, Local Privilege Escalation (LPE)

Synonyms: Remote Code Execution
Type of term: acronym
Language of the term (2 char ISO code): en
Back