SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  ElasticSearch Remote Code Execution

Category: WEB-ATTACKS      

Elasticsearch is prone to an arbitrary code-execution vulnerability. An attacker could exploit this issue to execute arbitrary Java code in the context of the application.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3120


Relevant Information