User Impersonation Vulnerability in Apache Oozie
CVE-2018-11799
6.5MEDIUM
What is CVE-2018-11799?
A vulnerability in Apache Oozie allows a malicious user to exploit the system by constructing specific XML inputs that enable the execution of workflows under the identity of other users. This issue arises in versions 3.1.3 through 5.0.0, leading to potential unauthorized access and actions performed within the application, compromising the security and integrity of user data.
Affected Version(s)
Apache Oozie Apache Oozie 3.1.3-incubating to 5.0.0