Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xcx2-2cj3-98r7

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Kibana versions before 6.8.9 and 7.7.0 contains a stored XSS flaw in the TSVB visualization. An attacker who is able to edit or create a TSVB visualization could allow the attacker to obtain sensitive information from, or perform destructive actions, on behalf of Kibana users who edit the TSVB visualization.

Kibana versions before 6.8.9 and 7.7.0 contains a stored XSS flaw in the TSVB visualization. An attacker who is able to edit or create a TSVB visualization could allow the attacker to obtain sensitive information from, or perform destructive actions, on behalf of Kibana users who edit the TSVB visualization.

EPSS

Процентиль: 53%
0.00302
Низкий

Связанные уязвимости

CVSS3: 5.4
redhat
больше 5 лет назад

Kibana versions before 6.8.9 and 7.7.0 contains a stored XSS flaw in the TSVB visualization. An attacker who is able to edit or create a TSVB visualization could allow the attacker to obtain sensitive information from, or perform destructive actions, on behalf of Kibana users who edit the TSVB visualization.

CVSS3: 5.4
nvd
больше 5 лет назад

Kibana versions before 6.8.9 and 7.7.0 contains a stored XSS flaw in the TSVB visualization. An attacker who is able to edit or create a TSVB visualization could allow the attacker to obtain sensitive information from, or perform destructive actions, on behalf of Kibana users who edit the TSVB visualization.

CVSS3: 5.4
debian
больше 5 лет назад

Kibana versions before 6.8.9 and 7.7.0 contains a stored XSS flaw in t ...

EPSS

Процентиль: 53%
0.00302
Низкий