CVE-2016-1000219
kibana: Session hijack via stealing cookies and auth headers from log ESA-2016-04
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Kibana before 4.5.4 and 4.1.11 when a custom output is configured for logging in, cookies and authorization headers could be written to the log files. This information could be used to hijack sessions of other users when using Kibana behind some form of authentication such as Shield.
Kibana en versiones anteriores a 4.5.4 y 4.1.11 cuando se configura una salida personalizada para iniciar sesión, las cookies y los encabezados de autorización podrían escribirse en los archivos de registro. Esta información podría ser utilizada para secuestrar sesiones de otros usuarios cuando se utiliza Kibana bajo alguna forma de autenticación como Shield.
A flaw was found in Kibana's logging functionality. If custom logging output was configured in Kibana, private user data could be written to the Kibana log files. A system attacker could use this data to hijack sessions of other users when using Kibana behind some form of authentication such as Shield.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-09-12 CVE Reserved
- 2017-06-16 CVE Published
- 2024-08-06 CVE Updated
- 2025-04-14 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-285: Improper Authorization
- CWE-532: Insertion of Sensitive Information into Log File
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/99178 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://www.elastic.co/community/security | 2020-08-14 | |
https://access.redhat.com/security/cve/CVE-2016-1000219 | 2016-09-08 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1364394 | 2016-09-08 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Elastic Search vendor "Elastic" | Kibana Search vendor "Elastic" for product "Kibana" | >= 4.1.0 < 4.1.11 Search vendor "Elastic" for product "Kibana" and version " >= 4.1.0 < 4.1.11" | - |
Affected
| ||||||
Elastic Search vendor "Elastic" | Kibana Search vendor "Elastic" for product "Kibana" | >= 4.5.0 < 4.5.4 Search vendor "Elastic" for product "Kibana" and version " >= 4.5.0 < 4.5.4" | - |
Affected
|