Apache Zeppelin Authentication Bypass Vulnerability

Apache Zeppelin Authentication Bypass Vulnerability

CVE-2020-13929 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

Authentication bypass vulnerability in Apache Zeppelin allows an attacker to bypass Zeppelin authentication mechanism to act as another user. This issue affects Apache Zeppelin Apache Zeppelin version 0.9.0 and prior versions.

Learn more about our Cis Benchmark Audit For Apache Http Server.