Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-1775

Server-side request forgery (SSRF) vulnerability in the proxy endpoint (api/v1/proxy) in Apache Ambari before 2.1.0 allows remote authenticated users to conduct port scans and access unsecured services via a crafted REST call.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 56.3%
CVSS Severity
CVSS v2 Score 5.5
Products affected by CVE-2015-1775
  • Apache » Ambari » Version: 1.5.0
    cpe:2.3:a:apache:ambari:1.5.0
  • Apache » Ambari » Version: 1.5.1
    cpe:2.3:a:apache:ambari:1.5.1
  • Apache » Ambari » Version: 1.6.0
    cpe:2.3:a:apache:ambari:1.6.0
  • Apache » Ambari » Version: 1.6.1
    cpe:2.3:a:apache:ambari:1.6.1
  • Apache » Ambari » Version: 1.7.0
    cpe:2.3:a:apache:ambari:1.7.0
  • Apache » Ambari » Version: 2.0.0
    cpe:2.3:a:apache:ambari:2.0.0
  • Apache » Ambari » Version: 2.0.1
    cpe:2.3:a:apache:ambari:2.0.1
  • Apache » Ambari » Version: 2.0.2
    cpe:2.3:a:apache:ambari:2.0.2


Contact Us

Shodan ® - All rights reserved