CVE-2015-3186

Currently unrated

Key Information:

Vendor
Apache
Status
Vendor
CVE Published:
2 November 2015

Summary

Cross-site scripting (XSS) vulnerability in Apache Ambari before 2.1.0 allows remote authenticated cluster operator users to inject arbitrary web script or HTML via the note field in a configuration change.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.