cbcvebase.
CVE-2016-0735
published 2016-04-11

CVE-2016-0735: Apache Ranger 0.5.x before 0.5.2 allows remote authenticated users to bypass intended parent resource-level access restrictions by leveraging mishandling of a…

high8.8CVSS 3.0
AVNACLPRLUINSUCHIHAH
Apache Ranger 0.5.x before 0.5.2 allows remote authenticated users to bypass intended parent resource-level access restrictions by leveraging mishandling of a resource-level exclude policy.

Affected

2 ranges
VendorProductVersion rangeFixed in
apacheranger
apacheranger