← Back

CVE-2015-1836

nvd nist
Published: Dec 21, 2015Modified: May 6, 2026

JSON object

Loading...
7.3
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
Exploitability: 3.9 / Impact: 3.4
Source: NVD

Description

Apache HBase 0.98 before 0.98.12.1, 1.0 before 1.0.1.1, and 1.1 before 1.1.0.1, as used in IBM InfoSphere BigInsights 3.0, 3.0.0.1, and 3.0.0.2 and other products, uses incorrect ACLs for ZooKeeper coordination state, which allows remote attackers to cause a denial of service (daemon outage), obtain sensitive information, or modify data via unspecified client traffic.

Affected (18)

1 product
Infosphere Biginsights
1 product
Hbase
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 3.0.0.0
Version 3.0.0.1
Version 3.0.0.2
Configuration B
15 vulnerable
Vulnerable SoftwareAffected Versions
Apache
Version 0.98.0
Version 0.98.10.1
Version 0.98.10
Version 0.98.11
Version 0.98.12
Version 0.98.1
Version 0.98.2
Version 0.98.3
Version 0.98.4
Version 0.98.5
Version 0.98.6.1
Version 0.98.6
Version 0.98.7
Version 0.98.8
Version 0.98.9

Timeline

No history available yet.