Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Apache Ranger: Remote Code Execution Vulnerability in NashornScriptEngineCreator
Vulnerability Description
Remote Code Execution Vulnerability in NashornScriptEngineCreator is reported in Apache Ranger versions <= 2.7.0. Users are recommended to upgrade to version 2.8.0, which fixes this issue.
CVSS Information
N/A
Vulnerability Type
对生成代码的控制不恰当(代码注入)
Vulnerability Title
Apache Ranger 安全漏洞
Vulnerability Description
Apache Ranger是美国阿帕奇(Apache)基金会的一套为Hadoop集群实现全面安全措施的架构。该产品针对授权、结算和数据保护等核心企业安全要求,提供中央安全政策管理。 Apache Ranger 2.7.0及之前版本存在安全漏洞,该漏洞源于NashornScriptEngineCreator存在远程代码执行漏洞。
CVSS Information
N/A
Vulnerability Type
N/A