Vulnerabilities > CVE-2023-46673 - Improper Handling of Exceptional Conditions vulnerability in Elastic Elasticsearch

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
elastic
CWE-755

Summary

It was identified that malformed scripts used in the script processor of an Ingest Pipeline could cause an Elasticsearch node to crash when calling the Simulate Pipeline API.

Vulnerable Configurations

Part Description Count
Application
Elastic
110