cbcvebase.
CVE-2016-6815
published 2017-10-13

CVE-2016-6815: In Apache Ranger before 0.6.2, users with "keyadmin" role should not be allowed to change password for users with "admin" role.

medium6.5CVSS 3.0
AVNACLPRLUINSUCNIHAN
In Apache Ranger before 0.6.2, users with "keyadmin" role should not be allowed to change password for users with "admin" role.

Affected

10 ranges
VendorProductVersion rangeFixed in
apacheranger
apacheranger
apacheranger
apacheranger
apacheranger
apacheranger
apacheranger
apache_software_foundationapache_ranger
apache_software_foundationapache_ranger
apache_software_foundationapache_ranger