Beveiligingsadvies

CVE-2016-10364

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2017-06-16 21:00:00
Laatst bijgewerkt 2024-08-06 03:21:50
Toegewezen door elastic
CVSS-score geen score
Status PUBLISHED

Beschrijving

With X-Pack installed, Kibana versions 5.0.0 and 5.0.1 were not properly authenticating requests to advanced settings and the short URL service, any authenticated user could make requests to those services regardless of their own permissions.