Elasticsearch Directory Traversal

Discussion in 'News Aggregator' started by Packet Storm, 28 Apr 2015.

  1. Packet Storm

    Packet Storm Guest

    All Elasticsearch versions prior to 1.5.2 and 1.4.5 are vulnerable to a directory traversal attack that allows an attacker to retrieve files from the server running Elasticsearch.

    Continue reading...
     

Share This Page

Loading...