CVE-2012-2230

Cloudera Manager 3.7.x before 3.7.5 and Service and Configuration Manager 3.5, when Kerberos is not enabled, does not properly install taskcontroller.cfg, which allows remote authenticated users to impersonate arbitrary user accounts via unspecified vectors, a different vulnerability than CVE-2012-1574.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:cloudera:cloudera_manager:3.7.1:*:free:*:*:*:*:*
cpe:2.3:a:cloudera:cloudera_manager:3.7.2:*:free:*:*:*:*:*
cpe:2.3:a:cloudera:cloudera_manager:3.7.4:*:enterprise:*:*:*:*:*
cpe:2.3:a:cloudera:cloudera_manager:3.7.0:*:free:*:*:*:*:*
cpe:2.3:a:cloudera:cloudera_manager:3.7.0:*:enterprise:*:*:*:*:*
cpe:2.3:a:cloudera:cloudera_manager:3.7.1:*:enterprise:*:*:*:*:*
cpe:2.3:a:cloudera:cloudera_manager:3.7.3:*:free:*:*:*:*:*
cpe:2.3:a:cloudera:cloudera_manager:3.7.4:*:free:*:*:*:*:*
cpe:2.3:a:cloudera:cloudera_manager:3.7.2:*:enterprise:*:*:*:*:*
cpe:2.3:a:cloudera:cloudera_manager:3.7.3:*:enterprise:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:cloudera:cloudera_service_and_configuration_manager:3.5:*:*:*:*:*:*:*

Information

Published : 2012-04-12 03:45

Updated : 2017-12-19 18:29


NVD link : CVE-2012-2230

Mitre link : CVE-2012-2230


JSON object : View

CWE
CWE-310

Cryptographic Issues

Advertisement

dedicated server usa

Products Affected

cloudera

  • cloudera_service_and_configuration_manager
  • cloudera_manager