Логотип exploitDog
bind:CVE-2026-26939
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-26939

Количество 4

Количество 4

redhat логотип

CVE-2026-26939

13 дней назад

Missing Authorization (CWE-862) in Kibana’s server-side Detection Rule Management can lead to Unauthorized Endpoint Response Action Configuration (host isolation, process termination, and process suspension) via CAPEC-1 (Accessing Functionality Not Properly Constrained by ACLs). This requires an authenticated attacker with rule management privileges.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2026-26939

13 дней назад

Missing Authorization (CWE-862) in Kibana’s server-side Detection Rule Management can lead to Unauthorized Endpoint Response Action Configuration (host isolation, process termination, and process suspension) via CAPEC-1 (Accessing Functionality Not Properly Constrained by ACLs). This requires an authenticated attacker with rule management privileges.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2026-26939

13 дней назад

Missing Authorization (CWE-862) in Kibana\u2019s server-side Detection ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-x4hf-rw83-jxhf

13 дней назад

Missing Authorization (CWE-862) in Kibana’s server-side Detection Rule Management can lead to Unauthorized Endpoint Response Action Configuration (host isolation, process termination, and process suspension) via CAPEC-1 (Accessing Functionality Not Properly Constrained by ACLs). This requires an authenticated attacker with rule management privileges.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2026-26939

Missing Authorization (CWE-862) in Kibana’s server-side Detection Rule Management can lead to Unauthorized Endpoint Response Action Configuration (host isolation, process termination, and process suspension) via CAPEC-1 (Accessing Functionality Not Properly Constrained by ACLs). This requires an authenticated attacker with rule management privileges.

CVSS3: 6.5
0%
Низкий
13 дней назад
nvd логотип
CVE-2026-26939

Missing Authorization (CWE-862) in Kibana’s server-side Detection Rule Management can lead to Unauthorized Endpoint Response Action Configuration (host isolation, process termination, and process suspension) via CAPEC-1 (Accessing Functionality Not Properly Constrained by ACLs). This requires an authenticated attacker with rule management privileges.

CVSS3: 6.5
0%
Низкий
13 дней назад
debian логотип
CVE-2026-26939

Missing Authorization (CWE-862) in Kibana\u2019s server-side Detection ...

CVSS3: 6.5
0%
Низкий
13 дней назад
github логотип
GHSA-x4hf-rw83-jxhf

Missing Authorization (CWE-862) in Kibana’s server-side Detection Rule Management can lead to Unauthorized Endpoint Response Action Configuration (host isolation, process termination, and process suspension) via CAPEC-1 (Accessing Functionality Not Properly Constrained by ACLs). This requires an authenticated attacker with rule management privileges.

CVSS3: 6.5
0%
Низкий
13 дней назад

Уязвимостей на страницу