Lucene search

K
osvGoogleOSV:GHSA-Q3PW-6VF2-66HF
HistoryMay 17, 2022 - 2:52 a.m.

Apache Ambari reveals administrator passwords

2022-05-1702:52:22
Google
osv.dev
4

0.0004 Low

EPSS

Percentile

5.1%

Apache Ambari 2.x before 2.4.0 includes KDC administrator passwords on the kadmin command line, which allows local users to obtain sensitive information via a process listing.

CPENameOperatorVersion
org.apache.ambari:ambarieq2.0.0.0

0.0004 Low

EPSS

Percentile

5.1%

Related for OSV:GHSA-Q3PW-6VF2-66HF