Improper handling of exceptional conditions in OpenSearch - CVE-2022-41917
Published: December 12, 2024
OpenSearch
Detailed vulnerability description
The vulnerability allows a remote user to perform a denial of service (DoS) attack.
The vulnerability exists due to incorrect error handling in the REST API. A remote user can trick the victim into opening a specially crafted input to exploit this vulnerability to read partial file information, and use this information to launch further attacks against the affected system.