ElasticSearch Snapshot API Directory Traversal Vulnerability (CVE-2015-5531)
Publish Date: 05 octobre 2016
Gravité: : Critique
Description
Directory traversal vulnerability in Elasticsearch before 1.6.1 allows remote attackers to read arbitrary files via unspecified vectors related to snapshot API calls.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1000128