ElasticSearch Snapshot API Directory Traversal Vulnerability (CVE-2015-5531)
Publish Date: 05 de października de 2016
Severity: : Critical
DESCRIPTION
Directory traversal vulnerability in Elasticsearch before 1.6.1 allows remote attackers to read arbitrary files via unspecified vectors related to snapshot API calls.
INFORMATION EXPOSURE
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1000128