High severity8.8NVD Advisory· Published Aug 23, 2018· Updated Jun 17, 2026
CVE-2018-8028
CVE-2018-8028
Description
An authenticated user can execute ALTER TABLE EXCHANGE PARTITIONS without being authorized by Apache Sentry before 2.0.1. This can allow an attacker unauthorized access to the partitioned data of a Sentry protected table and can allow an attacker to remove data from a Sentry protected table.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
org.apache.sentry:sentryMaven | < 2.0.1 | 2.0.1 |
Affected products
3- Apache Software Foundation/Apache Sentryv5Range: Apache Sentry 2.0.0
Patches
Vulnerability mechanics
References
3- cwiki.apache.org/confluence/display/SENTRY/Vulnerabilities+found+in+Apache+SentrynvdThird Party AdvisoryWEB
- github.com/advisories/GHSA-6xhj-p29v-82j8ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2018-8028ghsaADVISORY
News mentions
0No linked articles in our index yet.