1 results (0.004 seconds)
CVSS: 5.9EPSS: 0%CPEs: 2EXPL: 0
CVE-2017-8444
https://notcve.org/view.php?id=CVE-2017-8444
The client-forwarder in Elastic Cloud Enterprise versions prior to 1.0.2 do not properly encrypt traffic to ZooKeeper. If an attacker is able to man in the middle (MITM) the traffic between the client-forwarder and ZooKeeper they could potentially obtain sensitive data. client-forwarder en las versiones de Elastic Cloud Enterprise anteriores a 1.0.2 no cifra el tráfico a ZooKeeper. Si un atacante puede realizar un ataque Man-in-the-Middle (MitM) en el tráfico entre client-forwarder y ZooKeeper, podría obtener datos sensibles. • https://discuss.elastic.co/t/elastic-cloud-enterprise-1-0-2-security-update/100247 • CWE-319: Cleartext Transmission of Sensitive Information •