CVE-2014-8733: Cloudera Manager

Low severity, CVSS 2.1. EPSS: 0.3% chance of exploitation in the next 30 days.

Cloudera Manager 5.2.0, 5.2.1, and 5.3.0 stores the LDAP bind password in plaintext in unspecified world-readable files under /etc/hadoop, which allows local users to obtain this password.

Affected products

  • Cloudera Cloudera Manager: version 5.2.0 only; version 5.2.1 only; version 5.3.0 only

Published 2015-02-10. Last modified 2026-06-17.