Show filters
74 Total Results
Displaying 71-74 of 74
Sort by:
Attacker Value
Unknown
CVE-2017-8439
Disclosure Date: June 05, 2017 (last updated November 26, 2024)
Kibana version 5.4.0 was affected by a Cross Site Scripting (XSS) bug in the Time Series Visual Builder. This bug could allow an attacker to obtain sensitive information from Kibana users.
0
Attacker Value
Unknown
CVE-2017-8440
Disclosure Date: June 05, 2017 (last updated November 26, 2024)
Starting in version 5.3.0, Kibana had a cross-site scripting (XSS) vulnerability in the Discover page that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users.
0
Attacker Value
Unknown
CVE-2015-8131
Disclosure Date: December 07, 2015 (last updated October 05, 2023)
Cross-site request forgery (CSRF) vulnerability in Elasticsearch Kibana before 4.1.3 and 4.2.x before 4.2.1 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
0
Attacker Value
Unknown
CVE-2015-4093
Disclosure Date: June 15, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in Elasticsearch Kibana 4.x before 4.0.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0