ZeroHour

CVE-2018-11777

CVSS 3.0
8.1 high
EPSS
2%p82
Published
()
Modified
Description

In Apache Hive 2.3.3, 3.1.0 and earlier, local resources on HiveServer2 machines are not properly protected against malicious user if ranger, sentry or sql standard authorizer is not in use.

Vendors
apache
Products
hive
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N

In the news

No ingested article mentions this CVE yet.