CVE-2018-3830
19.09.2018, 19:29
Kibana versions 5.3.0 to 6.4.1 had a cross-site scripting (XSS) vulnerability via the source field formatter that could allow an attacker to obtain sensitive information from or perform destructive actions on behalf of other Kibana users.
Vendor | Product | Version |
---|---|---|
elastic | kibana | 5.3.0 ≤ 𝑥 ≤ 6.4.1 |
redhat | openshift_container_platform | 3.11 |
𝑥
= Vulnerable software versions
References