Lucene search

K
cvelistElasticCVELIST:CVE-2020-7017
HistoryJul 27, 2020 - 6:00 p.m.

CVE-2020-7017

2020-07-2718:00:15
CWE-79
elastic
www.cve.org
1

6.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.4%

In Kibana versions before 6.8.11 and 7.8.1 the region map visualization in contains a stored XSS flaw. An attacker who is able to edit or create a region map visualization could obtain sensitive information or perform destructive actions on behalf of Kibana users who view the region map visualization.

CNA Affected

[
  {
    "product": "Kibana",
    "vendor": "Elastic",
    "versions": [
      {
        "status": "affected",
        "version": "before 6.8.11 and 7.8.1"
      }
    ]
  }
]

6.3 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

48.4%