The Policy Admin Tool in Apache Ranger before 0.5.0 allows remote authenticated users to bypass intended access restrictions via direct access to module URLs.
References
Configurations
Information
Published : 2016-04-11 12:59
Updated : 2016-04-13 11:12
NVD link : CVE-2015-0266
Mitre link : CVE-2015-0266
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
apache
- ranger