CVE-2015-4457: XSS
Published Nov 26, 2019
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in the Cloudera Manager UI before 5.4.3 allow remote authenticated users to inject arbitrary web script or HTML using unspecified vectors.
Affected Software
1 affected component
Cloudera Cloudera Manager<5.4.3
Event History
Nov 26, 2019
CVE Published
via MITRE·02:02 PM
Data Sourced
via MITRE·02:02 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2015-4457.
2
What is the severity level of CVE-2015-4457?
The severity level of CVE-2015-4457 is medium (5.4).
3
What is the description of CVE-2015-4457?
CVE-2015-4457 is a vulnerability that allows remote authenticated users to inject arbitrary web script or HTML using unspecified vectors.
4
How does CVE-2015-4457 impact Cloudera Manager UI?
CVE-2015-4457 affects the Cloudera Manager UI before version 5.4.3, allowing for multiple cross-site scripting (XSS) vulnerabilities.
5
Is there a fix available for CVE-2015-4457?
Yes, a fix for CVE-2015-4457 is available in Cloudera Manager version 5.4.3.