CVE-2015-5210: Apache Ambari

Medium severity, CVSS 5.8. EPSS: 4.1% chance of exploitation in the next 30 days.

Open redirect vulnerability in Apache Ambari before 2.1.2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the targetURI parameter.

Affected products

  • Apache Ambari: up to and including 2.1.1; version 1.7.0 only; version 2.0.0 only; version 2.0.1 only; version 2.0.2 only; version 2.1.0 only

Published 2015-11-02. Last modified 2026-06-17.