AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2018-3828

HIGH · CVSS 7.5 EPSS 0.51%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2018-09-19 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. See the original NVD description below for full technical details.

CVE
CVE-2018-3828
Severity
HIGH
CVSS
7.5
EPSS
0.51%

Original NVD Description

Elastic Cloud Enterprise (ECE) versions prior to 1.1.4 contain an information exposure vulnerability. It was discovered that certain exception conditions would result in encryption keys, passwords, and other security sensitive headers being leaked to the allocator logs. An attacker with access to the logging cluster may obtain leaked credentials and perform authenticated actions using these credentials.

Related CVEs

Other vulnerabilities affecting the same vendor(s)