Sensitive Data Exposure in Ambari Server Host

Sensitive Data Exposure in Ambari Server Host

CVE-2017-5655 · MEDIUM Severity

AV:N/AC:L/AU:S/C:P/I:N/A:N

In Ambari 2.2.2 through 2.4.2 and Ambari 2.5.0, sensitive data may be stored on disk in temporary files on the Ambari Server host. The temporary files are readable by any user authenticated on the host.

Learn more about our Cis Benchmark Audit For Server Software.