CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Apache. It may be remotely exploitable.
CVE
CVE-2016-0733
Severity
CRITICAL
CVSS
9.8
EPSS
3.06%
Apache
Original NVD Description
The Admin UI in Apache Ranger before 0.5.1 does not properly handle authentication requests that lack a password, which allows remote attackers to bypass authentication by leveraging knowledge of a valid username.