Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Apache Ranger 0.5.x before 0.5.2 allows remote authenticated users to bypass intended parent resource-level access restrictions by leveraging mishandling of a resource-level exclude policy.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Ranger 安全漏洞
Vulnerability Description
Apache Ranger是美国阿帕奇(Apache)软件基金会的一套为Hadoop集群实现全面安全措施的架构,它针对授权、结算和数据保护等核心企业安全要求,提供中央安全政策管理。 Apache Ranger 0.5.2之前0.5.x版本中存在安全漏洞。远程攻击者可借助resource-level等级的排除策略利用该漏洞使用更高的权限执行受限制操作。
CVSS Information
N/A
Vulnerability Type
N/A