CVE-2018-10815: Infoleak
Published May 24, 2019
·Updated
An issue was discovered in Cloudera Manager before 5.13.4, 5.14.x before 5.14.4, and 5.15.x before 5.15.1. A read-only user can access sensitive cluster information.
Affected Software
3 affected components
Cloudera Cloudera Manager<5.13.4
Cloudera Cloudera Manager>=5.14.0<5.14.4
Cloudera Cloudera Manager>=5.15.0<5.15.1
Event History
May 24, 2019
CVE Published
via MITRE·04:58 PM
Data Sourced
via MITRE·04:58 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2018-10815.
2
What is the severity level of CVE-2018-10815?
The severity level of CVE-2018-10815 is medium with a CVSS score of 6.5.
3
What is the affected software for CVE-2018-10815?
The affected software for CVE-2018-10815 is Cloudera Manager versions before 5.13.4, 5.14.x before 5.14.4, and 5.15.x before 5.15.1.
4
What can a read-only user do with CVE-2018-10815?
A read-only user can access sensitive cluster information with CVE-2018-10815.
5
Where can I find more information about CVE-2018-10815?
You can find more information about CVE-2018-10815 on the Cloudera website and their security bulletins page.