CVE-2019-13415

MEDIUM

Search Guard <24.3 - Info Disclosure

Title source: llm
STIX 2.1

Description

Search Guard versions before 24.3 had an issue when Cross Cluster Search (CCS) was enabled, authenticated users can gain read access to data they are not authorized to see.

Scores

CVSS v3 6.5
EPSS 0.0020
EPSS Percentile 42.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-280
Status published
Products (1)
search-guard/search_guard < 24.3
Published Aug 13, 2019
Tracked Since Feb 18, 2026