← back
CVE-2017-8449

CVE-2017-8449

EPSS 0.8%CWE-732
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 0.8%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
16 Jun 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
X-Pack Security 5.2.x would allow access to more fields than the user should have seen if the field level security rules used a mix of grant and exclude rules when merging multiple rules with field level security rules for the same index.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →