apache oozie CVE-2018-11799 is a vulnerability in Apache Oozie
Published on December 19, 2018

Vulnerability allows a user of Apache Oozie 3.1.3-incubating to 5.0.0 to impersonate other users. The malicious user can construct an XML that results workflows running in other user's name.

NVD


Products Associated with CVE-2018-11799

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2018-11799 are published in Apache Oozie:

 

Affected Versions

Apache Software Foundation Apache Oozie Version Apache Oozie 3.1.3-incubating to 5.0.0 is affected by CVE-2018-11799

Exploit Probability

EPSS
0.24%
Percentile
47.07%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.