AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-11799

MEDIUM · CVSS 6.5 EPSS 1.48%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-12-19 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2018-11799
Severity
MEDIUM
CVSS
6.5
EPSS
1.48%
Apache

Original NVD Description

Vulnerability allows a user of Apache Oozie 3.1.3-incubating to 5.0.0 to impersonate other users. The malicious user can construct an XML that results workflows running in other user's name.