In Ambari 2.2.2 through 2.4.2 and Ambari 2.5.0, sensitive data may be stored on disk in temporary files on the Ambari Server host. The temporary files are readable by any user authenticated on the host.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-14737 | In Ambari 2.2.2 through 2.4.2 and Ambari 2.5.0, sensitive data may be stored on disk in temporary files on the Ambari Server host. The temporary files are readable by any user authenticated on the host. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-05T15:11:47.387Z
Reserved: 2017-01-29T00:00:00
Link: CVE-2017-5655
No data.
Status : Deferred
Published: 2017-05-15T14:29:00.213
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-5655
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD