CVE-2021-22151
22.11.2023, 01:15
It was discovered that Kibana was not validating a user supplied path, which would load .pbf files. Because of this, a malicious user could arbitrarily traverse the Kibana host to load internal files ending in the .pbf extension.
Vendor | Product | Version |
---|---|---|
elastic | kibana | 7.9.0 ≤ 𝑥 ≤ 7.14.0 |
𝑥
= Vulnerable software versions