cbcvebase.
CVE-2015-5167
published 2016-04-12

CVE-2015-5167: The Policy Admin Tool in Apache Ranger before 0.5.1 allows remote authenticated users to bypass intended access restrictions via the REST API.

medium6.5CVSS 3.0
AVNACLPRLUINSUCNIHAN
The Policy Admin Tool in Apache Ranger before 0.5.1 allows remote authenticated users to bypass intended access restrictions via the REST API.

Affected

1 ranges
VendorProductVersion rangeFixed in
apacheranger<= 0.5.0