← back
CVE-2023-46673

CVE-2023-46673

CVSS 6.5 MEDIUMEPSS 0.8%CWE-755
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 6.5EPSS 0.8%KEV nãoPoC Patch
Lifecycle
22 Nov 2023Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
It was identified that malformed scripts used in the script processor of an Ingest Pipeline could cause an Elasticsearch node to crash when calling the Simulate Pipeline API.
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Affected products
Elastic · Elasticsearch

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →