Search Guard versions before 24.3 had an issue when Cross Cluster Search (CCS) was enabled, authenticated users can gain read access to data they are not authorized to see.
References
| Link | Resource |
|---|---|
| https://docs.search-guard.com/6.x-25/changelog-searchguard-6-x-24_3 | Release Notes Vendor Advisory |
| https://search-guard.com/cve-advisory/ | Vendor Advisory |
| https://docs.search-guard.com/6.x-25/changelog-searchguard-6-x-24_3 | Release Notes Vendor Advisory |
| https://search-guard.com/cve-advisory/ | Vendor Advisory |
Configurations
History
21 Nov 2024, 04:24
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://docs.search-guard.com/6.x-25/changelog-searchguard-6-x-24_3 - Release Notes, Vendor Advisory | |
| References | () https://search-guard.com/cve-advisory/ - Vendor Advisory |
Information
Published : 2019-08-13 19:15
Updated : 2024-11-21 04:24
NVD link : CVE-2019-13415
Mitre link : CVE-2019-13415
CVE.ORG link : CVE-2019-13415
JSON object : View
Products Affected
search-guard
- search_guard
CWE
