CVE-2018-8042
CVE-2018-8042
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
18 Jul 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Apache Ambari, version 2.5.0 to 2.6.2, passwords for Hadoop credential stores are exposed in Ambari Agent informational log messages when the credential store feature is enabled for eligible services. For example, Hive and Oozie.
Affected products
Apache Software Foundation · Apache AmbariWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →