CVE-2016-9271

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
26/11/2019
Last modified:
05/12/2019

Description

Cloudera Manager 5.7.x before 5.7.6, 5.8.x before 5.8.4, and 5.9.x before 5.9.1 allows XSS in the help search feature.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cloudera:cloudera_manager:*:*:*:*:*:*:*:* 5.0.0 (including) 5.0.7 (including)
cpe:2.3:a:cloudera:cloudera_manager:*:*:*:*:*:*:*:* 5.1.0 (including) 5.1.6 (including)
cpe:2.3:a:cloudera:cloudera_manager:*:*:*:*:*:*:*:* 5.2.0 (including) 5.2.7 (including)
cpe:2.3:a:cloudera:cloudera_manager:*:*:*:*:*:*:*:* 5.3.0 (including) 5.3.10 (including)
cpe:2.3:a:cloudera:cloudera_manager:*:*:*:*:*:*:*:* 5.4.0 (including) 5.4.3 (including)
cpe:2.3:a:cloudera:cloudera_manager:*:*:*:*:*:*:*:* 5.4.5 (including) 5.4.10 (including)
cpe:2.3:a:cloudera:cloudera_manager:*:*:*:*:*:*:*:* 5.5.0 (including) 5.5.6 (including)
cpe:2.3:a:cloudera:cloudera_manager:*:*:*:*:*:*:*:* 5.6.0 (including) 5.6.1 (including)
cpe:2.3:a:cloudera:cloudera_manager:*:*:*:*:*:*:*:* 5.7.0 (including) 5.7.5 (including)
cpe:2.3:a:cloudera:cloudera_manager:*:*:*:*:*:*:*:* 5.8.0 (including) 5.8.3 (including)
cpe:2.3:a:cloudera:cloudera_manager:5.9.0:*:*:*:*:*:*:*