CVE-2017-7676 is a vulnerability in Apache Ranger
Published on June 14, 2017
Policy resource matcher in Apache Ranger before 0.7.1 ignores characters after '*' wildcard character - like my*test, test*.txt. This can result in unintended behavior.
Products Associated with CVE-2017-7676
Want to know whenever a new CVE is published for Apache Ranger? stack.watch will email you.
Affected Versions
Apache Software Foundation Apache Ranger:- Version 0.5.x is affected.
- Version 0.6.x is affected.
- Version 0.7.0 is affected.
Exploit Probability
EPSS
0.87%
Percentile
74.87%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.