CVE-2017-7676
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 4.2%
exploitation probability
4.2%top 9% of all CVEs
observed exploitation
nono source reports it
Policy resource matcher in Apache Ranger before 0.7.1 ignores characters after '*' wildcard character - like my*test, test*.txt. This can result in unintended behavior.
Affected products
Apache Software Foundation · Apache Ranger