In Kibana versions before 6.8.11 and 7.8.1 the region map visualization in contains a stored XSS flaw. An attacker who is able to edit or create a region map visualization could obtain sensitive information or perform destructive actions on behalf of Kibana users who view the region map visualization.
Advisories
Source ID Title
EUVD EUVD EUVD-2020-28154 In Kibana versions before 6.8.11 and 7.8.1 the region map visualization in contains a stored XSS flaw. An attacker who is able to edit or create a region map visualization could obtain sensitive information or perform destructive actions on behalf of Kibana users who view the region map visualization.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: elastic

Published:

Updated: 2024-08-04T09:18:02.514Z

Reserved: 2020-01-14T00:00:00

Link: CVE-2020-7017

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-07-27T18:15:14.233

Modified: 2024-11-21T05:36:30.080

Link: CVE-2020-7017

cve-icon Redhat

Severity : Moderate

Publid Date: 2020-07-27T00:00:00Z

Links: CVE-2020-7017 - Bugzilla

cve-icon OpenCVE Enrichment

No data.