Skip to content

H3-2021-0036

Unauthenticated Access to Elasticsearch

Category SECURITY_MISCONFIGURATION
Base Score 6.0

Description

Elasticsearch is a distributed search engine, commonly used for log aggregation and analysis. Unauthenticated access to Elasticsearch allows attackers to retrieve and potentially alter data in the cluster.

Impact

Attackers can access sensitive data stored in the Elasticsearch cluster, such as plain-text passwords, operational intelligence, and business-critical information. Attackers with write access can tamper with data and reconfigure the cluster.

References