In Ambari 2.4.x (before 2.4.3) and Ambari 2.5.0, an authorized user of the Ambari Hive View may be able to gain unauthorized read access to files on the host where the Ambari server executes.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: apache
Published: 2017-05-12T21:00:00
Updated: 2024-08-05T15:11:48.668Z
Reserved: 2017-01-29T00:00:00
Link: CVE-2017-5654
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-05-12T21:29:00.160
Modified: 2024-11-21T03:28:07.053
Link: CVE-2017-5654
Redhat
No data.