CVE-2017-3161
EUVD-2022-499626.04.2017, 20:59
The HDFS web UI in Apache Hadoop before 2.7.0 is vulnerable to a cross-site scripting (XSS) attack through an unescaped query parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apache | hadoop | 𝑥 ≤ 2.6.5 |
𝑥
= Vulnerable software versions
References