Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:30191
HistoryApr 28, 2021 - 6:46 a.m.

Privilege Escalation

2021-04-2806:46:52
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
hadoop-ozone-client
privilege escalation
unauthorized access
s3 buckets
apache ozone cluster
exposure of data

EPSS

0.001

Percentile

49.6%

hadoop-ozone-client is vulnerable to privilege escalation. An attacker can use a curl command or an unauthenticated HTTP request to access S3 buckets and keys in a secure Apache Ozone Cluster, thereby allowing unauthorized access to buckets and keys resulting in exposure of data to anonymous clients or users.

EPSS

0.001

Percentile

49.6%

Related for VERACODE:30191