Security Advisory

CVE-2021-41532

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-11-19 09:20:26
Last updated 2024-08-04 03:15:29
Assigner apache
State PUBLISHED

Description

In Apache Ozone before 1.2.0, Recon HTTP endpoints provide access to OM, SCM and Datanode metadata. Due to a bug, any unauthenticated user can access the data from these endpoints.