CVE Published: 23/04/2019 |
CVE Updated: 05/08/2024 |
CVE Year: 2018 Source: apache |
Vendor: Apache Software Foundation |
Product: Apache Zeppelin Status : PUBLISHED
CVE-2018-1317 Description
In Apache Zeppelin prior to 0.8.0 the cron scheduler was enabled by default and could allow users to run paragraphs as other users without authentication.