CVE-2018-17860

HIGH

Cloudera CDH 5.x-5.15.1 6.x-6.0.1 - Insecure Default Permissions

Title source: llm
STIX 2.1

Description

Cloudera CDH has Insecure Permissions because ALL cannot be revoked.This affects 5.x through 5.15.1 and 6.x through 6.0.1.

Scores

CVSS v3 7.2
EPSS 0.0095
EPSS Percentile 56.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-276
Status published
Products (5)
cloudera/cdh 5.15.0
cloudera/cdh 5.15.1
cloudera/cdh 6.0.0
cloudera/cdh 6.0.1
cloudera/cdh 5.0.0 - 5.14.0
Published Nov 26, 2019
Tracked Since Feb 18, 2026