Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cloudera cloudera manager vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2016-4950
Cloudera Manager 5.5 and previous versions allows remote malicious users to enumerate user sessions via a request to /api/v11/users/sessions.
Cloudera Manager
7.5
CVSSv3
CVE-2016-4949
Cloudera Manager 5.5 and previous versions allows remote malicious users to obtain sensitive information via a (1) stderr.log or (2) stdout.log value in the filename parameter to /cmf/process/<process_id>/logs.
Cloudera Manager
NA
CVE-2014-8733
Cloudera Manager 5.2.0, 5.2.1, and 5.3.0 stores the LDAP bind password in plaintext in unspecified world-readable files under /etc/hadoop, which allows local users to obtain this password.
Cloudera Cloudera Manager 5.2.1
Cloudera Cloudera Manager 5.3.0
Cloudera Cloudera Manager 5.2.0
NA
CVE-2014-0220
Cloudera Manager prior to 4.8.3 and 5.x prior to 5.0.1 allows remote authenticated users to obtain sensitive configuration information via the API.
Cloudera Cloudera Manager 5.0.0
Cloudera Cloudera Manager 4.6.0
Cloudera Cloudera Manager 4.5.4
Cloudera Cloudera Manager 4.5.3
Cloudera Cloudera Manager 4.1.1
Cloudera Cloudera Manager 4.1
Cloudera Cloudera Manager
Cloudera Cloudera Manager 4.8.1
Cloudera Cloudera Manager 4.5.2
Cloudera Cloudera Manager 4.5.1
Cloudera Cloudera Manager 4.0.3
Cloudera Cloudera Manager 4.0.2
Cloudera Cloudera Manager 4.7.2
Cloudera Cloudera Manager 4.6.3
Cloudera Cloudera Manager 4.5.0
Cloudera Cloudera Manager 4.1.4
Cloudera Cloudera Manager 4.0.1
Cloudera Cloudera Manager 4.6.2
Cloudera Cloudera Manager 4.6.1
Cloudera Cloudera Manager 4.1.3
Cloudera Cloudera Manager 4.1.2
NA
CVE-2012-2230
Cloudera Manager 3.7.x prior to 3.7.5 and Service and Configuration Manager 3.5, when Kerberos is not enabled, does not properly install taskcontroller.cfg, which allows remote authenticated users to impersonate arbitrary user accounts via unspecified vectors, a different vulnera...
Cloudera Cloudera Manager 3.7.1
Cloudera Cloudera Manager 3.7.2
Cloudera Cloudera Manager 3.7.4
Cloudera Cloudera Manager 3.7.0
Cloudera Cloudera Manager 3.7.3
Cloudera Cloudera Service And Configuration Manager 3.5
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-49223
CVE-2024-0044
information disclosure
CVE-2024-35753
HTML injection
CVE-2024-21306
CVE-2024-35733
SQL injection
CVE-2024-35732
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3