4.8
CVSSv3

CVE-2020-7016

Published: 27/07/2020 Updated: 16/11/2022
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
CVSS v3 Base Score: 4.8 | Impact Score: 3.6 | Exploitability Score: 1.2
VMScore: 187
Vector: AV:N/AC:H/Au:S/C:N/I:N/A:P

Vulnerability Summary

Kibana versions prior to 6.8.11 and 7.8.1 contain a denial of service (DoS) flaw in Timelion. An attacker can construct a URL that when viewed by a Kibana user can lead to the Kibana process consuming large amounts of CPU and becoming unresponsive.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

elasticsearch kibana

oracle peoplesoft enterprise peopletools 8.58

oracle communications billing and revenue management 12.0.0.3.0

oracle communications cloud native core network function cloud native environment 1.7.0

Vendor Advisories

Kibana versions before 6811 and 781 contain a denial of service (DoS) flaw in Timelion An attacker can construct a URL that when viewed by a Kibana user can lead to the Kibana process consuming large amounts of CPU and becoming unresponsive ...