Cross Site Scripting Vulnerability in Cloudera Manager by Cloudera
CVE-2018-5798

6.1MEDIUM

Key Information:

Vendor

Cloudera

Vendor
CVE Published:
7 June 2019

What is CVE-2018-5798?

An unspecified cross site scripting vulnerability exists in Cloudera Manager, which could allow attackers to execute arbitrary scripts in the context of a user's browser session. This could lead to unauthorized access and manipulation of sensitive information within the application. Organizations using Cloudera Manager must implement appropriate security measures and updates to mitigate this risk.

References

CVSS V3.1

Score:
6.1
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.