CVE-2018-3828

CVE-2018-3828

Elastic Cloud Enterprise (ECE) versions prior to 1.1.4 contain an information exposure vulnerability. It was discovered that certain exception conditions would result in encryption keys, passwords, and other security sensitive headers being leaked to the allocator logs. An attacker with access to the logging cluster may obtain leaked credentials and perform authenticated actions using these credentials.

Source: CVE-2018-3828

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다