CVE-2025-25016
01.05.2025, 14:15
Unrestricted file upload in Kibana allows an authenticated attacker to compromise software integrity by uploading a crafted malicious file due to insufficient server-side validation.Enginsight
Vendor | Product | Version |
---|---|---|
elastic | kibana | 7.17.0 ≤ 𝑥 < 7.17.19 |
elastic | kibana | 8.0.0 ≤ 𝑥 < 8.13.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration