RSS   Vulnerabilities for 'Enterprise search'   RSS

2021-12-07
 
CVE-2021-37940

CWE-918
 

 
An information disclosure via GET request server-side request forgery vulnerability was discovered with the Workplace Search Github Enterprise Server integration. Using this vulnerability, a malicious Workplace Search admin could use the GHES integration to view hosts that might not be publicly accessible.

 
2020-08-18
 
CVE-2020-7018

CWE-269
 

 

 

 >>> Vendor: Elastic 16 Products
X-pack
Kibana reporting
Elasticsearch
Azure repository
Apm-agent-ruby
Elastic cloud enterprise
Logstash
Elasticsearch x-pack
Kibana x-pack
Logstash x-pack
Winlogbeat
Apm agent
Elastic cloud on kubernetes
Elastic app search
Enterprise search
Kibana


Copyright 2022, cxsecurity.com

 

Back to Top