CVE Database
/

CVE-2018-11799

Back to search

CVE-2018-11799

Published: Dec 19, 2018

Modified: Aug 5, 2024

PUBLISHED

Description

Vulnerability allows a user of Apache Oozie 3.1.3-incubating to 5.0.0 to impersonate other users. The malicious user can construct an XML that results workflows running in other user's name.

VendorProductVersions

Apache Software Foundation

Apache Oozie

affected
Apache Oozie 3.1.3-incubating to 5.0.0

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now