Multiple cross-site scripting (XSS) vulnerabilities in Cloudera HUE 3.9.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) First name or (2) Last name field in the HUE Users page.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-03-07T16:00:00
Updated: 2024-08-06T00:46:39.906Z
Reserved: 2016-05-20T00:00:00
Link: CVE-2016-4946
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-03-07T16:59:00.180
Modified: 2024-11-21T02:53:16.017
Link: CVE-2016-4946
Redhat
No data.