Stored cross-site scripting vulnerability in Kibana - CVE-2020-7017 (MacOS)ID: oval:org.secpod.oval:def:67618 | Date: (C)2020-12-04 (M)2022-10-13 |
Class: VULNERABILITY | Family: macos |
The host is installed with Kibana before 6.8.11 or 7.x before 7.8.1 and is prone to a stored cross-site scripting vulnerability. A flaw is present in the application, which fails to properly handle an issue in region map visualization. Successful exploitation could allow an attacker to obtain sensitive information or perform destructive actions on behalf of Kibana users who view the region map visualization.
Platform: |
Apple Mac OS 11 |
Apple Mac OS X 10.11 |
Apple Mac OS X 10.12 |
Apple Mac OS X 10.13 |
Apple Mac OS X 10.14 |
Apple Mac OS X 10.15 |