apache zeppelin CVE-2018-1317 is a vulnerability in Apache Zeppelin
Published on April 23, 2019

In Apache Zeppelin prior to 0.8.0 the cron scheduler was enabled by default and could allow users to run paragraphs as other users without authentication.

NVD


Products Associated with CVE-2018-1317

Want to know whenever a new CVE is published for Apache Zeppelin? stack.watch will email you.

 

Affected Versions

Apache Software Foundation Apache Zeppelin Version prior to 0.8.0 is affected by CVE-2018-1317

Exploit Probability

EPSS
3.41%
Percentile
87.23%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.