Launch Week Day 1: Announcing Security Design Review
HIGH 8.8 Maven

Improper Access Control in Apache Hadoop

GHSA-7q56-mp4c-gggg · CVE-2016-5393

Published · Modified

Description

In Apache Hadoop 2.6.x before 2.6.5 and 2.7.x before 2.7.3, a remote user who can authenticate with the HDFS NameNode can possibly run arbitrary commands with the same privileges as the HDFS service.

Ready to move

Start Securing

Free, no credit card | First findings in minutes