Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w7hj-3rjm-8vj7

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Apache Ambari, version 2.5.0 to 2.6.2, passwords for Hadoop credential stores are exposed in Ambari Agent informational log messages when the credential store feature is enabled for eligible services. For example, Hive and Oozie.

Apache Ambari, version 2.5.0 to 2.6.2, passwords for Hadoop credential stores are exposed in Ambari Agent informational log messages when the credential store feature is enabled for eligible services. For example, Hive and Oozie.

EPSS

Процентиль: 70%
0.00651
Низкий

8.1 High

CVSS3

Дефекты

CWE-209

Связанные уязвимости

CVSS3: 8.1
nvd
больше 7 лет назад

Apache Ambari, version 2.5.0 to 2.6.2, passwords for Hadoop credential stores are exposed in Ambari Agent informational log messages when the credential store feature is enabled for eligible services. For example, Hive and Oozie.

EPSS

Процентиль: 70%
0.00651
Низкий

8.1 High

CVSS3

Дефекты

CWE-209