VULNERABILITY INTELLIGENCE

CVE-2017-11482

CVSS score6.1 MEDIUM
EPSS probability0.90%
CISA KEVNot currently listed
Published2017-12-08
Last modified2026-06-17

Description

The Kibana fix for CVE-2017-8451 was found to be incomplete. With X-Pack installed, Kibana versions before 6.0.1 and 5.6.5 have an open redirect vulnerability on the login page that would enable an attacker to craft a link that redirects to an arbitrary website.