CVE-2020-7014 is a privilege escalation vulnerability affecting Elasticsearch versions 6.7.0-6.8.7 and 7.0.0-7.6.1, stemming from an incomplete fix for a previous CVE. An authenticated attacker capable of generating API keys and authentication tokens can exploit this flaw to obtain an authentication token with elevated privileges. This vulnerability carries a high CVSS score of 8.8, indicating a network-based attack with low complexity and high impact on confidentiality, integrity, and availability. Currently, there is no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 6.7.0, <= 6.8.7CPE matchmatch criteria | cpe:2.3:a:elastic:elasticsearch:*:*:*:*:*:*:*:* | ||
>= 7.0.0, <= 7.6.1CPE matchmatch criteria | cpe:2.3:a:elastic:elasticsearch:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.3 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Privilege Escalation Flaw in Elasticsearch
Mar 18, 2021The fix for CVE-2020-7009 was found to be incomplete. Elasticsearch versions from 6.7.0 to 6.8.7 and 7.0.0 to 7.6.1 contain a privilege escalation flaw if an attacker is able to create API keys and also authentication tokens. An attacker who is able to generate an API key and an authentication token can perform a series of steps that result in an authentication token being generated with elevated privileges.
Jun 9, 2020elasticsearch: Incomplete fix for CVE-2020-7009 could result in generating API key with elevated privileges
Jun 3, 2020