Impact
The vulnerability arises when the Kibana Agent Builder does not validate the requesting user's permissions against those required by a separate Kibana feature before creating and executing a tool that utilizes that feature. This omission allows an attacker who can invoke the Agent Builder to execute privileged operations and gain access to data that the user is not authorized to read.
Affected Systems
Elastic’s Kibana product is affected. No specific version range is provided in the advisory, so all deployed instances should be investigated until a patch becomes available.
Risk and Exploitability
The CVSS score of 6.5 indicates moderate severity. Because the EPSS score is not available and the vulnerability is not listed in the CISA KEV catalog, the likelihood of widespread exploitation is uncertain, though the design flaw could be exploited by users who can interact with the Agent Builder. The attack likely requires authenticated access to Kibana, and the impact spans both privilege escalation and unauthorized data disclosure.
OpenCVE Enrichment