312
VMScore

CVE-2019-7618

Published: 01/10/2019 Updated: 16/10/2020
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:P/I:N/A:N

Vulnerability Summary

A local file disclosure flaw was found in Elastic Code versions 7.3.0, 7.3.1, and 7.3.2. If a malicious code repository is imported into Code it is possible to read arbitrary files from the local filesystem of the Kibana instance running Code with the permission of the Kibana system user.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

elastic kibana 7.3.1

elastic kibana 7.3.0

elastic kibana 7.3.2