VDB
CVE-2024-23443
CVE-2024-23443
PUBLISHED
CVSS 4.900000095367432 MEDIUM
A high-privileged user, allowed to create custom osquery packs 17 could affect the availability of Kibana by uploading a maliciously crafted osquery pack.
EPSS 1.76% · 77.2th percentile
Risk Scores
CVSS 3.1
4.900000095367432
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H
EPSS Score
1.76%
77.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bitnami | elk | 0, 0, 0 |
| Bitnami | elk | 0 |
| Bitnami | kibana | 0, 0, 0 |
Timeline
- Mar 15, 2018 PoC Published
- Mar 29, 2024 PoC Published
- Mar 30, 2024 PoC Published
- Jun 13, 2024 CVE Published
- Jun 20, 2024 EPSS Score
- Jul 13, 2024 EPSS Score
- Aug 28, 2024 EPSS Score
- Sep 20, 2024 EPSS Score
- Oct 4, 2024 Coalition ESS Score
- Nov 6, 2024 EPSS Score
- Nov 29, 2024 EPSS Score
- Jan 15, 2025 EPSS Score