Description
It was discovered that Kibana was not validating a user supplied path, which would load .pbf files. Because of this, a malicious user could arbitrarily traverse the Kibana host to load internal files ending in the .pbf extension.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-9298 | It was discovered that Kibana was not validating a user supplied path, which would load .pbf files. Because of this, a malicious user could arbitrarily traverse the Kibana host to load internal files ending in the .pbf extension. |
References
History
Fri, 11 Oct 2024 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: elastic
Published:
Updated: 2024-10-11T18:06:45.178Z
Reserved: 2021-01-04T20:17:39.860Z
Link: CVE-2021-22151
Updated: 2024-08-03T18:37:16.711Z
Status : Modified
Published: 2023-11-22T01:15:07.607
Modified: 2024-11-21T05:49:36.413
Link: CVE-2021-22151
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD