Miggo Logo

CVE-2023-46674: Elasticsearch-hadoop Unsafe Deserialization

6

CVSS Score
3.1

Basic Information

EPSS Score
0.17641%
Published
12/5/2023
Updated
12/13/2023
KEV Status
No
Technology
TechnologyJava

Technical Details

CVSS Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:L/I:H/A:H
Package NameEcosystemVulnerable VersionsFirst Patched Version
org.elasticsearch:elasticsearch-hadoopmaven< 7.17.117.17.11
org.elasticsearch:elasticsearch-hadoopmaven>= 8.0.0, < 8.9.08.9.0

Vulnerability Intelligence
Miggo AIMiggo AI

Miggo AIRoot Cause Analysis:
In progress

WAF Protection Rules

WAF Rule

*n issu* w*s i**nti*i** t**t *llow** t** uns*** **s*ri*liz*tion o* j*v* o*j**ts *rom ***oop or sp*rk *on*i*ur*tion prop*rti*s t**t *oul* **v* ***n mo*i*i** *y *ut**nti**t** us*rs. *l*sti* woul* lik* to t**nk Y*kov S***r*novi**, wit* *m*zon W** S*rvi*

Reasoning

No *n*lysis *v*il**l*