4
CVSSv2

CVE-2019-13421

Published: 23/08/2019 Updated: 09/10/2019
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 4.9 | Impact Score: 3.6 | Exploitability Score: 1.2
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Search Guard versions prior to 23.1 had an issue that an administrative user is able to retrieve bcrypt password hashes of other users configured in the internal user database.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

search-guard search guard

Vendor Advisories

Impact: Low Public Date: 2019-08-23 CWE: CWE-522 Bugzilla: 1747476: CVE-2019-13421 search-guard: Admini ...

Github Repositories

Implement vulnerabilities scanning on top of package management system like apt, pip, composer...

Scabi Implement vulnerabilities scanning on top of package management system like apt, pip, composer Install You can install scabi either via pip (PyPI) or from source To install using pip: python3 -m pip install scabi Or manually: git clone githubcom/remiflavien1/scabi cd scabi python3 setuppy install