CVE-2015-5531

EPSS 92.0%

Improper Limitation of a Pathname to a Restricted Directory in Elasticsearch

Published: 5/14/2022Modified: 12/5/2024

Description

Directory traversal vulnerability in Elasticsearch before 1.6.1 allows remote attackers to read arbitrary files via unspecified vectors related to snapshot API calls.

Affected packages (1)

References (6)