CVE-2020-13924

Publication date

2021-03-17 09:05:19

Family

apache

State

PUBLISHED

Description

In Apache Ambari versions 2.6.2.2 and earlier, malicious users can construct file names for directory traversal and traverse to other directories to download files.