[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248678

 
 

909

 
 

195426

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Information disclosure vulnerability in Elasticsearch and Logstash - CVE-2021-45046 (rpm)

ID: oval:org.secpod.oval:def:76500Date: (C)2021-12-20   (M)2023-11-10
Class: VULNERABILITYFamily: unix




The host is installed with Elasticsearch 5.x before 6.8.21, 7.x before 7.16.1 or Logstash 5.x before 6.8.21, 7.x before 7.16.1 and is prone to an information disclosure vulnerability. A flaw is present in the application, which fails to handle an issue in Log4j library. Successful exploitation could allow attackers to cause information leakage or denial of service.

Platform:
Linux
Product:
elasticsearch
Logstash
Reference:
CVE-2021-45046
CVE    1
CVE-2021-45046

© SecPod Technologies