CVE-2015-1427
KEVCRITICAL 9.8EPSS 99.9%
The Groovy scripting engine in Elasticsearch before 1.3.8 and 1.4.x before 1.4.3 allows remote attackers to bypass the sandbox protection mechanism and execute arbitrary shell commands via a crafted script.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 99.91% chance of exploitation in the next 30 days, 100th percentile
- CISA KEV
- added 2022-03-25
- Nuclei
- high · CWE-284
- Published
- 2015-02-17
- Updated
- 2025-10-22
Proof-of-concept exploits (12)
- http://packetstormsecurity.com/files/130784/ElasticSearch-Unauthenticated-Remote-Code-Exe…
- IsmailSoltakhanov17/Monkey0★ · 2022-04-14
- Sebikea/CVE-2015-1427-for-trixie0★ · 2024-11-10
- cved-sources/cve-2015-14270★ · 2021-04-15
- cyberharsh/Groovy-scripting-engine-CVE-2015-14270★ · 2020-06-24
- gitrobtest/Java-Security81★ · 2019-09-19
- h3inzzz/cve2015_14270★ · 2020-12-21
- marcocesarato/Shell-BotKiller4★ · 2019-06-19
- retr0-13/monkey-auto-pentool0★ · 2022-03-13
- ricardolopezg/backend-swimm0★ · 2025-10-21
- t0kx/exploit-CVE-2015-142732★ · 2018-04-07
- xpgdgit/CVE-2015-14270★ · 2022-08-01
Nuclei templates (1)
Metasploit modules (1)
ExploitDB entries (2)
Vulhub environments (1)
Exploit collections (2)
- chaitin/xray/blob/master/pocs/elasticsearch-cve-2015-1427.yml
- zan8in/afrog/blob/main/pocs/afrog-pocs/CVE/2015/CVE-2015-1427.yaml