Lucene search

K
osvGoogleOSV:GHSA-RF7Q-XQM3-6923
HistoryOct 17, 2018 - 5:21 p.m.

Apache Ranger allows remote authenticated administrators to inject arbitrary web script or HTML

2018-10-1717:21:37
Google
osv.dev
11

0.006 Low

EPSS

Percentile

77.9%

Cross-site scripting (XSS) vulnerability in the create user functionality in the policy admin tool in Apache Ranger before 0.6.1 allows remote authenticated administrators to inject arbitrary web script or HTML via vectors related to policies.

CPENameOperatorVersion
org.apache.ranger:rangereq0.6.0

0.006 Low

EPSS

Percentile

77.9%

Related for OSV:GHSA-RF7Q-XQM3-6923