NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
83870  CVE-2014-0229  Apache Hadoop 0.23.x before 0.23.11 and 2.x before 2.4.1, as used in Cloudera CDH 5.0.x before 5.0.2, do not check authorization for the (1) refreshNamenodes, (2) deleteBlockPool, and (3) shutdownDatanode HDFS admin commands, which allows remote authenticated users to cause a denial of service (DataNodes shutdown) or perform unnecessary operations by issuing a command.    Medium  2017-03-29  2017-03-28  View
83869  CVE-2013-6446  The JobHistory Server in Cloudera CDH 4.x before 4.6.0 and 5.x before 5.0.0 Beta 2, when using MRv2/YARN with HTTP authentication, allows remote authenticated users to obtain sensitive job information by leveraging failure to enforce job ACLs.    3.5  Low  2017-03-29  2017-03-28  View
83868  CVE-2009-5147  DL::dlopen in Ruby 1.8, 1.9.0, 1.9.2, 1.9.3, 2.0.0 before patchlevel 648, and 2.1 before 2.1.8 opens libraries with tainted names.          2017-03-29  2017-03-29  View
83867  CVE-2017-7298  In Moodle 3.2.2+, there is XSS in the Course summary filter of the Add a new course page, as demonstrated by a crafted attribute of an SVG element.    3.5  Low  2017-04-27  2017-03-30  View
83866  CVE-2017-7297  Rancher Labs rancher server 1.2.0+ is vulnerable to authenticated users disabling access control via an API call. This is fixed in versions rancher/server:v1.2.4, rancher/server:v1.3.5, rancher/server:v1.4.3, and rancher/server:v1.5.3.    6.5  Medium  2017-04-27  2017-04-04  View

Page 899 of 17672, showing 5 records out of 88360 total, starting on record 4491, ending on 4495

Actions