Security Advisory

CVE-2021-39236

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-11-19 09:20:25
Last updated 2024-08-04 02:06:40
Assigner apache
State PUBLISHED

Description

In Apache Ozone before 1.2.0, Authenticated users with valid Ozone S3 credentials can create specific OM requests, impersonating any other user.