CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. It affects Apache.
CVE
CVE-2018-11766
Severity
HIGH
CVSS
8.8
EPSS
3.24%
Apache
Original NVD Description
In Apache Hadoop 2.7.4 to 2.7.6, the security fix for CVE-2016-6811 is incomplete. A user who can escalate to yarn user can possibly run arbitrary commands as root user.
Related CVEs
Other vulnerabilities affecting the same vendor(s)