CVE-2018-11777 is a vulnerability in Apache Hive
Published on November 8, 2018
In Apache Hive 2.3.3, 3.1.0 and earlier, local resources on HiveServer2 machines are not properly protected against malicious user if ranger, sentry or sql standard authorizer is not in use.
Products Associated with CVE-2018-11777
Want to know whenever a new CVE is published for Apache Hive? stack.watch will email you.
Affected Versions
Apache Software Foundation Apache Hive Version All versions of Hive, including 2.3.3, 3.1.0 and earlier is affected by CVE-2018-11777Exploit Probability
EPSS
0.41%
Percentile
61.05%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.