← Back

CVE-2017-5654

nvd nist
Published: May 12, 2017Modified: May 13, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

In Ambari 2.4.x (before 2.4.3) and Ambari 2.5.0, an authorized user of the Ambari Hive View may be able to gain unauthorized read access to files on the host where the Ambari server executes.

Affected (3)

Products: Apache: Ambari
1 product
Ambari
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Apache
Version 2.4.0
Version 2.4.1
Version 2.5.0

Timeline

No history available yet.