Privilege Escalation Vulnerability in Cloudera Data Science Workbench
CVE-2017-15536
8.8HIGH
What is CVE-2017-15536?
A vulnerability in Cloudera Data Science Workbench versions prior to 1.2.0 allows authenticated users to exploit multiple weaknesses in the web application. By exploiting these flaws, a user can escalate their privileges, potentially gaining root access to CDSW nodes. This access enables the user to retrieve sensitive data, including the CDSW database, Kerberos keytabs, bcrypt hashed passwords, session tokens, invitation tokens, and environment variables, posing significant security risks.