Beveiligingsadvies

CVE-2024-37282

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-06-28 04:58:18
Laatst bijgewerkt 2024-08-02 03:50:55
Toegewezen door elastic
CVSS-score 8.1
Status PUBLISHED

Beschrijving

It was identified that under certain specific preconditions, an API key that was originally created with a specific privileges could be subsequently used to create new API keys that have elevated privileges.