« Volver al listado

CVE-2019-13423

Estado: ModificadaAlta (8.8)—

Search Guard Kibana Plugin versions before 5.6.8-7 and before 6.x.y-12 had an issue that an authenticated Kibana user could impersonate as kibanaserver user when providing wrong credentials when all of the following conditions a-c are true: a) Kibana is configured to use Single-Sign-On as authentication method, one of Kerberos, JWT, Proxy, Client certificate. b) The kibanaserver user is configured to use HTTP Basic as the authentication method. c) Search Guard is configured to use an SSO authentication domain and HTTP Basic at the same time

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2019-13423",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 6.5,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:L/Au:S/C:P/I:P/A:P",
          "authentication": "SINGLE",
          "integrityImpact": "PARTIAL",
          "accessComplexity": "LOW",
          "availabilityImpact": "PARTIAL",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 6.4,
        "baseSeverity": "MEDIUM",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 8,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 8.8,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "LOW",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 2.8
      }
    ]
  },
  "affected": [
    {
      "source": "security@search-guard.com",
      "affectedData": [
        {
          "vendor": "floragunn",
          "product": "Search Guard Kibana Plugin",
          "versions": [
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "5.6.8-7",
              "versionType": "custom"
            },
            {
              "status": "affected",
              "version": "unspecified",
              "lessThan": "6.x.y-12",
              "versionType": "custom"
            }
          ]
        }
      ]
    }
  ],
  "published": "2019-08-23T14:15:11.607",
  "references": [
    {
      "url": "https://docs.search-guard.com/6.x-25/changelog-kibana-6.x-12",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "security@search-guard.com"
    },
    {
      "url": "https://search-guard.com/cve-advisory/",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "security@search-guard.com"
    },
    {
      "url": "https://docs.search-guard.com/6.x-25/changelog-kibana-6.x-12",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://search-guard.com/cve-advisory/",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "security@search-guard.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-287"
        }
      ]
    },
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "NVD-CWE-noinfo"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "Search Guard Kibana Plugin versions before 5.6.8-7 and before 6.x.y-12 had an issue that an authenticated Kibana user could impersonate as kibanaserver user when providing wrong credentials when all of the following conditions a-c are true: a) Kibana is configured to use Single-Sign-On as authentication method, one of Kerberos, JWT, Proxy, Client certificate. b) The kibanaserver user is configured to use HTTP Basic as the authentication method. c) Search Guard is configured to use an SSO authentication domain and HTTP Basic at the same time"
    },
    {
      "lang": "es",
      "value": "Las versiones de Search Guard Kibana Plugin anteriores a 5.6.8-7 y anteriores a 6.xy-12 tenían el problema de que un usuario autenticado de Kibana podía hacerse pasar por usuario de kibanaserver al proporcionar credenciales incorrectas cuando todas las siguientes condiciones ac son verdaderas: a) Kibana está configurado utilizar Single-Sign-On como método de autenticación, uno de Kerberos, JWT, Proxy, Certificado de cliente. b) El usuario de kibanaserver está configurado para usar HTTP Basic como método de autenticación. c) Search Guard está configurado para usar un dominio de autenticación SSO y HTTP Basic al mismo tiempo"
    }
  ],
  "lastModified": "2026-06-17T02:16:45.643",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:search-guard:search_guard:*:*:*:*:*:kibana:*:*",
              "vulnerable": true,
              "matchCriteriaId": "902DAA8C-944C-4A60-AC8E-EA16E5E8D49F",
              "versionEndExcluding": "5.6.8-7"
            },
            {
              "criteria": "cpe:2.3:a:search-guard:search_guard:*:*:*:*:*:kibana:*:*",
              "vulnerable": true,
              "matchCriteriaId": "14FB43F9-4F47-467A-A83E-A6B99D8E1768",
              "versionEndExcluding": "6.2.3-12",
              "versionStartIncluding": "6.1.0-8"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "security@search-guard.com"
}