PT-2020-19342 · Elastic · Kibana

Published

2020-07-27

·

Updated

2024-03-06

·

CVE-2020-7017

CVSS v3.1

6.7

Medium

VectorAV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:L
Name of the Vulnerable Software and Affected Versions Kibana versions prior to 6.8.11 Kibana versions prior to 7.8.1
Description The region map visualization in Kibana contains a stored XSS flaw. An attacker who can edit or create a region map visualization could obtain sensitive information or perform destructive actions on behalf of Kibana users who view the region map visualization.
Recommendations For versions prior to 6.8.11, update to version 6.8.11 or later. For versions prior to 7.8.1, update to version 7.8.1 or later.

Fix

XSS

Weakness Enumeration

Related Identifiers

BIT-ELK-2020-7017
BIT-KIBANA-2020-7017
CVE-2020-7017

Affected Products

Kibana