Vulnerabilities > CVE-2024-23443 - Unspecified vulnerability in Elastic Kibana

047910
CVSS 4.9 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
elastic

Summary

A high-privileged user, allowed to create custom osquery packs 17 could affect the availability of Kibana by uploading a maliciously crafted osquery pack.

Vulnerable Configurations

Part Description Count
Application
Elastic
131