SearchBlox before 8.2 allows remote attackers to obtain sensitive information via a pretty=true action to the _cluster/health URI.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-0969
Reference (s):
- CERT-VN:VU#697316
- URL: http://www.kb.cert.org/vuls/id/697316

