apache hadoop CVE-2017-3161 is a vulnerability in Apache Hadoop
Published on April 26, 2017

The HDFS web UI in Apache Hadoop before 2.7.0 is vulnerable to a cross-site scripting (XSS) attack through an unescaped query parameter.

NVD


Products Associated with CVE-2017-3161

Want to know whenever a new CVE is published for Apache Hadoop? stack.watch will email you.

 

Affected Versions

Apache Software Foundation Apache Hadoop Version 2.6.x and earlier is affected by CVE-2017-3161

Exploit Probability

EPSS
5.80%
Percentile
90.40%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.