cbcvebase.
CVE-2016-8746
published 2017-06-14

CVE-2016-8746: Apache Ranger before 0.6.3 policy engine incorrectly matches paths in certain conditions when policy does not contain wildcards and has recursion flag set to…

medium5.9CVSS 3.0
AVNACHPRNUINSUCNIHAN
Apache Ranger before 0.6.3 policy engine incorrectly matches paths in certain conditions when policy does not contain wildcards and has recursion flag set to true.

Affected

2 ranges
VendorProductVersion rangeFixed in
apacheranger<= 0.6.2
apache_software_foundationapache_ranger