An issue exists in Cloudera Hue 6.0.0 up to and including 6.1.0. When using one of following authentication backends: LdapBackend, PamBackend, SpnegoDjangoBackend, RemoteUserDjangoBackend, SAML2Backend, OpenIDBackend, or OAuthBackend, external users are created with superuser privileges.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cloudera cdh 6.0.0 |
||
cloudera cdh 6.0.1 |
||
cloudera cdh 6.1.0 |