Cloudera Manager Multiple HTML Injection and Cross Site Scripting vulnerabilities

Bugtraq ID: 93878
Class: Input Validation Error
CVE: CVE-2016-4948
CVE-2016-4948
CVE-2016-4948
CVE-2016-4948
CVE-2016-4948
CVE-2016-4948
Remote: Yes
Local: No
Published: Oct 25 2016 12:00AM
Updated: Oct 26 2016 12:19AM
Credit: The vendor reported these issue.
Vulnerable: Cloudera Cloudera Manager 5.0.1
Cloudera Cloudera Manager 5.0
Cloudera Cloudera Manager 5.7.1
Cloudera Cloudera Manager 5.7.0
Cloudera Cloudera Manager 5.5
Cloudera Cloudera Manager 5.3.0
Cloudera Cloudera Manager 5.2.0
Not Vulnerable: Cloudera Cloudera Manager 5.7.2


 

Privacy Statement
Copyright 2010, SecurityFocus