Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7834
HistoryNov 19, 2018 - 3:32 a.m.

Information Disclosure

2018-11-1903:32:03
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
5

0.002 Low

EPSS

Percentile

54.6%

kibana is vulnerable to information disclosure. An improperly initialized kibana login screen causes user-entered credentials to be shown in the URL bar and allows untrusted parties to obtain the user’s credentials via access logs or through the Referer header when the user browses to another website.

CPENameOperatorVersion
kibanaeq5.1.1
kibanale5.4.3

0.002 Low

EPSS

Percentile

54.6%