Apache

Knox

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 15.93%
  • Published 17.01.2022 20:15:07
  • Last modified 21.11.2024 06:27:39

When using Apache Knox SSO prior to 1.6.1, a request could be crafted to redirect a user to a malicious page due to improper URL parsing. A request that included a specially crafted request parameter could be used to redirect the user to a page contr...

  • EPSS 0.04%
  • Published 26.05.2017 21:29:00
  • Last modified 20.04.2025 01:37:25

For versions of Apache Knox from 0.2.0 to 0.11.0 - an authenticated user may use a specially crafted URL to impersonate another user while accessing WebHDFS through Apache Knox. This may result in escalated privileges and unauthorized data access. Wh...