CVE-2016-4949
07.03.2017, 16:59
Cloudera Manager 5.5 and earlier allows remote attackers to obtain sensitive information via a (1) stderr.log or (2) stdout.log value in the filename parameter to /cmf/process/<process_id>/logs.Enginsight
Vendor | Product | Version |
---|---|---|
cloudera | manager | 𝑥 ≤ 5.5.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References