NVD

Id
87210  
Name
CVE-2016-10364  
Description
With X-Pack installed, Kibana versions 5.0.0 and 5.0.1 were not properly authenticating requests to advanced settings and the short URL service, any authenticated user could make requests to those services regardless of their own permissions.  
Reject
 
CVSS Version
 
CVSS Score
 
Severity
 
CVSS Base Score
 
CVSS Impact Subscore
 
CVSS Exploit Subscore
 
CVSS Vector
 
Pub Date
2017-06-18  
Published
2017-06-16  
Modified Date
2017-06-16  
Seq
2016-10364  

Actions