Apache Ambari (CVE-2015-5210)
Apache Ambari (CVE-2015-5210)
Release date:
Updated on:
Affected Systems:
Apache Group Ambari <2.1.2
Description:
CVE (CAN) ID: CVE-2015-5210
Apache Ambari is a tool that defines, manages, and monitors Apache Hadoop clusters.
Apache Ambari 2.1.2 and earlier versions have an open redirection security vulnerability. Remote attackers can redirect users to any website and perform phishing attacks by using URLs in the targetURI parameter.
<* Source: Mateusz Olejarka (SecuRing)
Link: https://cwiki.apache.org/confluence/display/AMBARI/Ambari+Vulnerabilities
*>
Suggestion:
Vendor patch:
Apache Group
------------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://cwiki.apache.org/confluence/display/AMBARI/Ambari+Vulnerabilities
Use Ambari to install Hadoop clusters in CentOS 6.5
This article permanently updates the link address: