CVE-2015-3270: Medium severity apache ambari vulnerability
Published Nov 2, 2015
·Updated
Apache Ambari before 2.0.2 or 2.1.x before 2.1.1 allows remote authenticated users to gain administrative privileges via unspecified vectors, possibly related to changing passwords.
Affected Software
4 affected components
Apache Ambari=1.7.0
Apache Ambari=2.0.0
Apache Ambari=2.0.1
Apache Ambari=2.1.0
Event History
Nov 2, 2015
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-3270?
CVE-2015-3270 is considered a critical vulnerability due to the potential for remote authenticated users to gain administrative privileges.
2
How do I fix CVE-2015-3270?
To fix CVE-2015-3270, upgrade Apache Ambari to version 2.0.2 or 2.1.1 or later versions.
3
What versions of Apache Ambari are affected by CVE-2015-3270?
CVE-2015-3270 affects Apache Ambari versions 1.7.0, 2.0.0, 2.0.1, and 2.1.0.
4
What type of vulnerability is CVE-2015-3270?
CVE-2015-3270 is a privilege escalation vulnerability that allows unauthorized access to administrative functions.
5
Who can exploit CVE-2015-3270?
CVE-2015-3270 can be exploited by remote authenticated users who can manipulate certain vectors within the Apache Ambari environment.