Cross-Site Scripting Vulnerabilities in Cloudera Manager UI by Cloudera
CVE-2015-4457
5.4MEDIUM
What is CVE-2015-4457?
Cloudera Manager UI prior to version 5.4.3 contains multiple cross-site scripting vulnerabilities. These security flaws enable remote authenticated users to inject arbitrary web scripts or HTML through various unspecified vectors, potentially leading to unauthorized actions and data exposure.