CVE-2018-3818
30.03.2018, 20:29
Kibana versions 5.1.1 to 6.1.2 and 5.6.6 had a cross-site scripting (XSS) vulnerability via the colored fields formatter that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users.
Vendor | Product | Version |
---|---|---|
elastic | kibana | 5.1.1 ≤ 𝑥 ≤ 6.1.2 |
𝑥
= Vulnerable software versions