In Ambari 2.2.2 through 2.4.2 and Ambari 2.5.0, sensitive data may be stored on disk in temporary files on the Ambari Server host. The temporary files are readable by any user authenticated on the host.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published: 2017-05-15T14:00:00

Updated: 2024-08-05T15:11:47.387Z

Reserved: 2017-01-29T00:00:00

Link: CVE-2017-5655

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2017-05-15T14:29:00.213

Modified: 2017-05-23T03:00:27.383

Link: CVE-2017-5655

cve-icon Redhat

No data.