Vulnerabilities > Amazon

DATE CVE VULNERABILITY TITLE RISK
2023-03-02 CVE-2023-25806 Information Exposure Through Discrepancy vulnerability in Amazon Opensearch and Opensearch Security
OpenSearch Security is a plugin for OpenSearch that offers encryption, authentication and authorization.
network
low complexity
amazon CWE-203
5.3
2023-02-03 CVE-2023-23933 Out-of-bounds Read vulnerability in Amazon Opensearch
OpenSearch Anomaly Detection identifies atypical data and receives automatic notifications.
network
low complexity
amazon CWE-125
4.3
2023-01-26 CVE-2023-23612 Improper Authentication vulnerability in Amazon Opensearch
OpenSearch is an open source distributed and RESTful search engine.
network
low complexity
amazon CWE-287
8.8
2023-01-26 CVE-2023-23613 Information Exposure vulnerability in Amazon Opensearch
OpenSearch is an open source distributed and RESTful search engine.
network
low complexity
amazon CWE-200
6.5
2022-12-28 CVE-2022-46174 Race Condition vulnerability in Amazon products
efs-utils is a set of Utilities for Amazon Elastic File System (EFS).
network
high complexity
amazon CWE-362
4.2
2022-12-27 CVE-2022-4725 Server-Side Request Forgery (SSRF) vulnerability in Amazon AWS Software Development KIT
A vulnerability was found in AWS SDK 2.59.0.
network
low complexity
amazon CWE-918
critical
9.8
2022-12-12 CVE-2022-23511 Improper Handling of Insufficient Privileges vulnerability in Amazon Cloudwatch Agent
A privilege escalation issue exists within the Amazon CloudWatch Agent for Windows, software for collecting metrics and logs from Amazon EC2 instances and on-premises servers, in versions up to and including v1.247354.
network
low complexity
amazon CWE-274
6.8
2022-11-16 CVE-2022-41917 Improper Handling of Exceptional Conditions vulnerability in Amazon Opensearch
OpenSearch is a community-driven, open source fork of Elasticsearch and Kibana.
network
low complexity
amazon CWE-755
4.3
2022-11-15 CVE-2022-41918 Unspecified vulnerability in Amazon Opensearch
OpenSearch is a community-driven, open source fork of Elasticsearch and Kibana.
network
low complexity
amazon
6.3
2022-11-11 CVE-2022-41906 Server-Side Request Forgery (SSRF) vulnerability in Amazon Opensearch Notifications
OpenSearch Notifications is a notifications plugin for OpenSearch that enables other plugins to send notifications via Email, Slack, Amazon Chime, Custom web-hook etc channels.
network
low complexity
amazon CWE-918
8.7