Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5v56-f8rx-2m6r

Опубликовано: 23 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 9

Описание

An issue was identified in Fleet Server where Fleet policies that could contain sensitive information were logged on INFO and ERROR log levels. The nature of the sensitive information largely depends on the integrations enabled.

An issue was identified in Fleet Server where Fleet policies that could contain sensitive information were logged on INFO and ERROR log levels. The nature of the sensitive information largely depends on the integrations enabled.

EPSS

Процентиль: 20%
0.00274
Низкий

9 Critical

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 9
nvd
больше 1 года назад

An issue was identified in Fleet Server where Fleet policies that could contain sensitive information were logged on INFO and ERROR log levels. The nature of the sensitive information largely depends on the integrations enabled.

CVSS3: 9
fstec
почти 2 года назад

Уязвимость серверного программного средства управление агентами Elastic Agent Elastic Fleet Server, связанная с недостатками контроля доступа, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 20%
0.00274
Низкий

9 Critical

CVSS3

Дефекты

CWE-200