QID 980842
QID 980842: Java (maven) Security Update for org.apache.ranger:ranger (GHSA-vhxc-8jjq-859j)
In Apache Ranger before 0.6.2, users with "keyadmin" role should not be allowed to change password for users with "admin" role.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-vhxc-8jjq-859j for updates pertaining to this vulnerability.
Vendor References
- GHSA-vhxc-8jjq-859j -
github.com/advisories/GHSA-vhxc-8jjq-859j
CVEs related to QID 980842
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-vhxc-8jjq-859j | org.apache.ranger:ranger |
|