CVE-2021-39236
EUVD-2021-229919.11.2021, 10:15
In Apache Ozone before 1.2.0, Authenticated users with valid Ozone S3 credentials can create specific OM requests, impersonating any other user.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| apache | ozone | 𝑥 < 1.2.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References