An issue was discovered in Cloudera Manager 5.x before 5.16.2, 6.0.x before 6.0.2, and 6.1.x before 6.1.1. Malicious impala queries can result in Cross Site Scripting (XSS) when viewed within this product.
2019-11-26T17:15:11.280
2024-11-21T04:26:45.797
Modified
CVSSv3.1: 5.4 (MEDIUM)
AV:N/AC:M/Au:S/C:N/I:P/A:N
6.8
2.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | cloudera | cloudera_manager | < 5.16.2 | Yes |
| Application | cloudera | cloudera_manager | 6.0.0 | Yes |
| Application | cloudera | cloudera_manager | 6.0.1 | Yes |
| Application | cloudera | cloudera_manager | 6.1.0 | Yes |