Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
elastic x-pack 5.3.0 vulnerabilities and exploits
(subscribe to this query)
490
VMScore
CVE-2017-8447
An error was found in the X-Pack Security 5.3.0 to 5.5.2 privilege enforcement. If a user has either 'delete' or 'index' permissions on an index in a cluster, they may be able to issue both delete and index requests against that index.
Elastic X-pack 5.5.2
Elastic X-pack 5.3.1
Elastic X-pack 5.3.2
Elastic X-pack 5.3.3
Elastic X-pack 5.4.0
Elastic X-pack 5.5.0
Elastic X-pack 5.3.0
578
VMScore
CVE-2017-8438
Elastic X-Pack Security versions 5.0.0 to 5.4.0 contain a privilege escalation bug in the run_as functionality. This bug prevents transitioning into the specified user specified in a run_as request. If a role has been created using a template that contains the _user properties, t...
Elastic X-pack 5.4.0
Elastic X-pack 5.2.0
Elastic X-pack 5.1.0
Elastic X-pack 5.3.2
Elastic X-pack 5.3.1
Elastic X-pack 5.3.0
Elastic X-pack 5.2.2
Elastic X-pack 5.2.1
Elastic X-pack 5.0.1
Elastic X-pack 5.0.0
Elastic X-pack 5.3.3
Elastic X-pack 5.1.1
Elastic X-pack 5.0.2
578
VMScore
CVE-2017-8448
An error was found in the permission model used by X-Pack Alerting 5.0.0 to 5.6.0 whereby users mapped to certain built-in roles could create a watch that results in that user gaining elevated privileges.
Elastic X-pack 5.1.1
Elastic X-pack 5.0.1
Elastic X-pack 5.3.1
Elastic X-pack 5.5.2
Elastic X-pack 5.3.2
Elastic X-pack 5.3.3
Elastic X-pack 5.4.0
Elastic X-pack 5.5.0
Elastic X-pack 5.6.0
Elastic X-pack 5.2.2
Elastic X-pack 5.2.1
Elastic X-pack 5.2.0
Elastic X-pack 5.0.2
Elastic X-pack 5.0.0
Elastic X-pack 5.3.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3581
reflected XSS
CVE-2024-26925
CVE-2024-27956
LFI
CVE-2024-3607
CVE-2024-3107
CVE-2024-3295
SQL
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started