Security Advisory

CVE-2023-31416

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-10-26 18:46:21
Last updated 2024-09-09 16:16:37
Assigner elastic
CVSS score 5.3
State PUBLISHED

Description

Secret token configuration is never applied when using ECK <2.8 with APM Server >=8.0. This could lead to anonymous requests to an APM Server being accepted and the data ingested into this APM deployment.