Skip to content
ambariGHSA-w3p6-94x2-xcvm

Apache Ambari Open Redirect

MediumCVE-2015-5210 · Published May 17, 2022 · updated Dec 6, 2024

Open redirect vulnerability in Apache Ambari before 2.1.2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the targetURI parameter.

GitHub advisory

Affected versions

PackageAffectedFixed in
org.apache.ambari:ambari
Maven
>= 1.7.0, < 2.1.22.1.2
Details and references

More ambari advisories

All ambari
Advisory
Apache Ambari Expression Language Injection vulnerability
High8.8Jul 12, 2023
Apache Ambari Expression Language Injection vulnerability
High8.8Jul 12, 2023
Apache Ambari SSRF Vulnerability
MediumMay 17, 2022
Apache Ambari reveals administrator passwords
Medium5.5May 17, 2022
Apache Ambari Improper Access Control
Critical9.8May 17, 2022
Cross-site Scripting (XSS) in Apache Ambari Views
Medium6.1Jan 6, 2022

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.