Elasticsearch Kibana 6.8.5

CPE Details

Elasticsearch Kibana 6.8.5
6.8.5
2019-12-30
16h00 +00:00
2020-08-14
15h19 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:elasticsearch:kibana:6.8.5:*:*:*:*:*:*:*

Informations

Vendor

elasticsearch

Product

kibana

Version

6.8.5

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2020-7016 2020-07-27 16h00 +00:00 Kibana versions before 6.8.11 and 7.8.1 contain a denial of service (DoS) flaw in Timelion. An attacker can construct a URL that when viewed by a Kibana user can lead to the Kibana process consuming large amounts of CPU and becoming unresponsive.
4.8
Medium
CVE-2020-7017 2020-07-27 16h00 +00:00 In Kibana versions before 6.8.11 and 7.8.1 the region map visualization in contains a stored XSS flaw. An attacker who is able to edit or create a region map visualization could obtain sensitive information or perform destructive actions on behalf of Kibana users who view the region map visualization.
6.7
Medium