CVE-2020-7016 PUBLISHED CVSS 8.699999809265137 HIGH

Kibana versions before 6.8.11 and 7.8.1 contain a denial of service (DoS) flaw in Timelion. An attacker can construct a URL that when viewed by a Kibana user can lead to the Kibana process consuming large amounts of CPU and becoming unresponsive.

EPSS 0.44% · 63.1th percentile

Risk Scores

CVSS v4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
EPSS Score
0.44%
63.1th percentile

Affected Products

VendorProductVersions
Bitnamielk0, 7.0.0
Bitnamikibana0, 7.0.0, 0
Bitnamielk0, 7.0.0, 0

Timeline

References

Open in Interactive Console →