Cross Site Scripting Vulnerability in Cloudera Manager by Cloudera
CVE-2019-14449
5.4MEDIUM
What is CVE-2019-14449?
Cloudera Manager versions 5.x prior to 5.16.2, 6.0.x prior to 6.0.2, and 6.1.x prior to 6.1.1 contain a vulnerability that allows malicious impala queries to trigger Cross Site Scripting (XSS) attacks when viewed within the application. This security flaw could result in unintended script execution within the user's browser, posing a risk to the integrity and confidentiality of user data.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
CVSS V3.1
Score:
5.4
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved
