Логотип exploitDog
bind:CVE-2021-22134
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-22134

Количество 6

Количество 6

ubuntu логотип

CVE-2021-22134

почти 5 лет назад

A document disclosure flaw was found in Elasticsearch versions after 7.6.0 and before 7.11.0 when Document or Field Level Security is used. Get requests do not properly apply security permissions when executing a query against a recently updated document. This affects documents that have been updated and not yet refreshed in the index. This could result in the search disclosing the existence of documents and fields the attacker should not be able to view.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2021-22134

почти 5 лет назад

A document disclosure flaw was found in Elasticsearch versions after 7.6.0 and before 7.11.0 when Document or Field Level Security is used. Get requests do not properly apply security permissions when executing a query against a recently updated document. This affects documents that have been updated and not yet refreshed in the index. This could result in the search disclosing the existence of documents and fields the attacker should not be able to view.

CVSS3: 2.6
EPSS: Низкий
nvd логотип

CVE-2021-22134

почти 5 лет назад

A document disclosure flaw was found in Elasticsearch versions after 7.6.0 and before 7.11.0 when Document or Field Level Security is used. Get requests do not properly apply security permissions when executing a query against a recently updated document. This affects documents that have been updated and not yet refreshed in the index. This could result in the search disclosing the existence of documents and fields the attacker should not be able to view.

CVSS3: 4.3
EPSS: Низкий
msrc логотип

CVE-2021-22134

около 4 лет назад

A document disclosure flaw was found in Elasticsearch versions after 7.6.0 and before 7.11.0 when Document or Field Level Security is used. Get requests do not properly apply security permissions when executing a query against a recently updated document. This affects documents that have been updated and not yet refreshed in the index. This could result in the search disclosing the existence of documents and fields the attacker should not be able to view.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2021-22134

почти 5 лет назад

A document disclosure flaw was found in Elasticsearch versions after 7 ...

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-hwvv-438r-mhvj

почти 5 лет назад

Exposure of Sensitive Information to an Unauthorized Actor

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-22134

A document disclosure flaw was found in Elasticsearch versions after 7.6.0 and before 7.11.0 when Document or Field Level Security is used. Get requests do not properly apply security permissions when executing a query against a recently updated document. This affects documents that have been updated and not yet refreshed in the index. This could result in the search disclosing the existence of documents and fields the attacker should not be able to view.

CVSS3: 4.3
0%
Низкий
почти 5 лет назад
redhat логотип
CVE-2021-22134

A document disclosure flaw was found in Elasticsearch versions after 7.6.0 and before 7.11.0 when Document or Field Level Security is used. Get requests do not properly apply security permissions when executing a query against a recently updated document. This affects documents that have been updated and not yet refreshed in the index. This could result in the search disclosing the existence of documents and fields the attacker should not be able to view.

CVSS3: 2.6
0%
Низкий
почти 5 лет назад
nvd логотип
CVE-2021-22134

A document disclosure flaw was found in Elasticsearch versions after 7.6.0 and before 7.11.0 when Document or Field Level Security is used. Get requests do not properly apply security permissions when executing a query against a recently updated document. This affects documents that have been updated and not yet refreshed in the index. This could result in the search disclosing the existence of documents and fields the attacker should not be able to view.

CVSS3: 4.3
0%
Низкий
почти 5 лет назад
msrc логотип
CVE-2021-22134

A document disclosure flaw was found in Elasticsearch versions after 7.6.0 and before 7.11.0 when Document or Field Level Security is used. Get requests do not properly apply security permissions when executing a query against a recently updated document. This affects documents that have been updated and not yet refreshed in the index. This could result in the search disclosing the existence of documents and fields the attacker should not be able to view.

CVSS3: 4.3
0%
Низкий
около 4 лет назад
debian логотип
CVE-2021-22134

A document disclosure flaw was found in Elasticsearch versions after 7 ...

CVSS3: 4.3
0%
Низкий
почти 5 лет назад
github логотип
GHSA-hwvv-438r-mhvj

Exposure of Sensitive Information to an Unauthorized Actor

CVSS3: 4.3
0%
Низкий
почти 5 лет назад

Уязвимостей на страницу