The keystore password for the Spark History Server may be exposed in unsecured files under the /var/run/cloudera-scm-agent directory managed by Cloudera Manager. The keystore file itself is not exposed.
2019-07-03T17:15:09.673
2024-11-21T03:35:50.120
Modified
CVSSv3.0: 7.5 (HIGH)
AV:N/AC:M/Au:S/C:P/I:N/A:N
6.8
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | cloudera | cloudera_manager | 5.11.0 | Yes |