Skip to content
ElasticsearchGHSA-hqqv-9x3v-mp7w

Privilege Escalation Flaw in Elasticsearch

Medium8.8CVE-2020-7014 · Published Mar 18, 2021 · updated Feb 17, 2024

The fix for CVE-2020-7009 was found to be incomplete. Elasticsearch versions from 6.7.0 to 6.8.7 and 7.0.0 to 7.6.1 contain a privilege escalation flaw if an attacker is able to create API keys and also authentication tokens. An attacker who is able to generate an API key and an authentication token can perform a series of steps that result in an authentication token being generated with elevated privileges.

GitHub advisory

Affected versions

PackageAffectedFixed in
org.elasticsearch:elasticsearch
Maven
>= 6.7.0, < 6.8.86.8.8
>= 7.0.0, < 7.6.27.6.2
Details and references
CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Severity from
GitHub (reviewed advisory)
Weakness
CWE-266, CWE-269
Also known as
BIT-elasticsearch-2020-7014, CVE-2020-7014

More Elasticsearch advisories

All Elasticsearch
Advisory
Exposure of sensitive information in Elasticsearch
Medium6.5Sep 20, 2021
Denial of Service in Elasticsearch
Medium5.7Aug 9, 2021
API information disclosure flaw in Elasticsearch
Medium5.3Jul 2, 2021
Insufficiently Protected Credentials in Elasticsearch
Medium4.8Mar 18, 2021
Privilege Context Switching Error in Elasticsearch
Low3.1Mar 18, 2021
Exposure of Sensitive Information to an Unauthorized Actor
Medium4.3Mar 18, 2021

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.