CVE-2020-7018

CVE-2020-7018

Elastic Enterprise Search before 7.9.0 contain a credential exposure flaw in the App Search interface. If a user is given the �developer� role, they will be able to view the administrator API credentials. These credentials could allow the developer user to conduct operations with the same permissions of the App Search administrator.

Source: CVE-2020-7018

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다