Vulnerability Details CVE-2015-4928
Apache Ambari before 2.1, as used in IBM Infosphere BigInsights 4.x before 4.1, includes cleartext passwords on a Configs screen, which allows physically proximate attackers to obtain sensitive information by reading password fields.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 47.9%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2015-4928
-
cpe:2.3:a:apache:ambari:0.9
-
cpe:2.3:a:apache:ambari:1.2.0
-
cpe:2.3:a:apache:ambari:1.2.1
-
cpe:2.3:a:apache:ambari:1.2.2
-
cpe:2.3:a:apache:ambari:1.2.3
-
cpe:2.3:a:apache:ambari:1.2.4
-
cpe:2.3:a:apache:ambari:1.2.5
-
cpe:2.3:a:apache:ambari:1.4.0
-
cpe:2.3:a:apache:ambari:1.4.1
-
cpe:2.3:a:apache:ambari:1.4.2
-
cpe:2.3:a:apache:ambari:1.4.3
-
cpe:2.3:a:apache:ambari:1.4.4
-
cpe:2.3:a:apache:ambari:1.5.0
-
cpe:2.3:a:apache:ambari:1.5.1
-
cpe:2.3:a:apache:ambari:1.6.0
-
cpe:2.3:a:apache:ambari:1.6.1
-
cpe:2.3:a:apache:ambari:1.7.0
-
cpe:2.3:a:apache:ambari:2.0.0
-
cpe:2.3:a:apache:ambari:2.0.1
-
cpe:2.3:a:apache:ambari:2.0.2
-
cpe:2.3:a:ibm:infosphere_biginsights:4.0.0.0
-
cpe:2.3:a:ibm:infosphere_biginsights:4.0.0.1