Vulnerability Description
Apache Atlas versions 0.6.0 (incubating), 0.7.0 (incubating), and 0.7.1 (incubating) allow access to the webapp directory contents by pointing to URIs like /js and /img.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Apache | Atlas | 0.6.0 |
Related Weaknesses (CWE)
References
- https://lists.apache.org/thread.html/f7435d66b840daa2a38ad1329d639b70f5a9476e758
- https://lists.apache.org/thread.html/f7435d66b840daa2a38ad1329d639b70f5a9476e758
FAQ
What is CVE-2016-8752?
CVE-2016-8752 is a vulnerability with a CVSS score of 7.5 (HIGH). Apache Atlas versions 0.6.0 (incubating), 0.7.0 (incubating), and 0.7.1 (incubating) allow access to the webapp directory contents by pointing to URIs like /js and /img.
How severe is CVE-2016-8752?
CVE-2016-8752 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-8752?
Check the references section above for vendor advisories and patch information. Affected products include: Apache Atlas.