CVE-2016-1000221

Logstash prior to version 2.3.4, Elasticsearch Output plugin would log to file HTTP authorization headers which could contain sensitive information.
References
Link Resource
https://www.elastic.co/community/security Vendor Advisory
http://www.securityfocus.com/bid/99126 Third Party Advisory VDB Entry
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:elastic:logstash:*:*:*:*:*:*:*:*

Information

Published : 2017-06-16 14:29

Updated : 2019-06-17 08:48


NVD link : CVE-2016-1000221

Mitre link : CVE-2016-1000221


JSON object : View

CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

Advertisement

dedicated server usa

Products Affected

elastic

  • logstash