CVE-2021-29243: XSS
Published Nov 8, 2021
·Updated
Cloudera Manager 5.x, 6.x, 7.1.x, 7.2.x, and 7.3.x allows XSS.
Affected Software
5 affected components
Cloudera Cloudera Manager>=5.0.0<=5.16.2
Cloudera Cloudera Manager>=6.0.0<=6.3.4
Cloudera Cloudera Manager>=7.1.0<=7.1.4
Cloudera Cloudera Manager>=7.2.0<=7.2.4
Cloudera Cloudera Manager>=7.3.0<=7.3.4
Event History
Nov 8, 2021
CVE Published
via MITRE·12:41 PM
Data Sourced
via MITRE·12:41 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2021-29243.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Cloudera Manager 5.x 6.x 7.1.x 7.2.x and 7.3.x allows XSS.'
3
What is the severity level of CVE-2021-29243?
The severity level of CVE-2021-29243 is medium.
4
Which versions of Cloudera Manager are affected?
Cloudera Manager versions 5.x, 6.x, 7.1.x, 7.2.x, and 7.3.x are affected.
5
How can I fix CVE-2021-29243?
To fix CVE-2021-29243, update your Cloudera Manager to a version that is not affected.