Medium severity6.7NVD Advisory· Published Jul 27, 2020· Updated Jun 17, 2026
CVE-2020-7017
CVE-2020-7017
Description
In Kibana versions before 6.8.11 and 7.8.1 the region map visualization in contains a stored XSS flaw. An attacker who is able to edit or create a region map visualization could obtain sensitive information or perform destructive actions on behalf of Kibana users who view the region map visualization.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8- osv-coords2 versions
< 6.8.11+ 1 more
- (no CPE)range: < 6.8.11
- (no CPE)range: < 6.8.11
- cpe:2.3:a:oracle:communications_billing_and_revenue_management:12.0.0.3.0:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:communications_cloud_native_core_network_function_cloud_native_environment:1.7.0:*:*:*:*:*:*:*
- cpe:2.3:a:oracle:peoplesoft_enterprise_peopletools:8.58:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
3- discuss.elastic.co/t/elastic-stack-6-8-11-and-7-8-1-security-update/242786nvdRelease NotesVendor Advisory
- www.elastic.co/community/security/nvdVendor Advisory
- www.oracle.com//security-alerts/cpujul2021.htmlnvdThird Party Advisory
News mentions
0No linked articles in our index yet.