CVE-2021-32481: XSS
Published Nov 8, 2021
·Updated
Cloudera Hue 4.6.0 allows XSS via the type parameter.
Affected Software
1 affected component
Cloudera Hue=4.6.0
Event History
Nov 8, 2021
CVE Published
via MITRE·12:21 PM
Data Sourced
via MITRE·12:21 PM
Description
Frequently Asked Questions
1
What is CVE-2021-32481?
CVE-2021-32481 is a vulnerability in Cloudera Hue 4.6.0 that allows for cross-site scripting (XSS) attacks via the type parameter.
2
What is the severity of CVE-2021-32481?
The severity of CVE-2021-32481 is medium with a CVSS score of 6.1.
3
How does CVE-2021-32481 impact Cloudera Hue?
CVE-2021-32481 allows attackers to perform cross-site scripting (XSS) attacks on Cloudera Hue 4.6.0 by exploiting the type parameter.
4
How can I fix CVE-2021-32481?
To fix CVE-2021-32481, it is recommended to upgrade to a patched version of Cloudera Hue.
5
Where can I find more information about CVE-2021-32481?
More information about CVE-2021-32481 can be found in the Cloudera Security Bulletin and the Cloudera Knowledge article linked in the references.