Apache Atlas CVE-2017-3155 Cross Frame Scripting Vulnerability
BID:100587
CVE-2017-3155 |Info
Apache Atlas CVE-2017-3155 Cross Frame Scripting Vulnerability
| Bugtraq ID: | 100587 |
| Class: | Input Validation Error |
| CVE: |
CVE-2017-3155 |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 29 2017 12:00AM |
| Updated: | Aug 29 2017 12:00AM |
| Credit: | The vendor reported this issue. |
| Vulnerable: |
Apache Atlas 0.7 Apache Atlas 0.6 |
| Not Vulnerable: |
Apache Atlas 0.7.1 |
Discussion
Apache Atlas CVE-2017-3155 Cross Frame Scripting Vulnerability
Apache Atlas is prone to a cross-frame scripting vulnerability.
Successful exploits will allow attackers to bypass the same-origin policy and perform unauthorized actions; other attacks are possible.
Apache Atlas 0.6.0 and 0.7.0 are affected; other versions may also be affected.
Apache Atlas is prone to a cross-frame scripting vulnerability.
Successful exploits will allow attackers to bypass the same-origin policy and perform unauthorized actions; other attacks are possible.
Apache Atlas 0.6.0 and 0.7.0 are affected; other versions may also be affected.
References
Apache Atlas CVE-2017-3155 Cross Frame Scripting Vulnerability
References:
References:
- Apache Homepage (Apache)
- l #4a4fef91e067fd0d9da569e30867c1fa65e2a052 (Apache)