Description

Cross-site request forgery (CSRF) vulnerability in Elasticsearch Kibana before 4.1.3 and 4.2.x before 4.2.1 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

Remediation

References

Related Vulnerabilities

Severity

Critical

Classification

CWE-352

Tags

Vendor Advisory