CVE-2023-3997

CVSS V2 None CVSS V3 None
Description
Splunk SOAR versions lower than 6.1.0 are indirectly affected by a potential vulnerability accessed through the user’s terminal. A third party can send Splunk SOAR a maliciously crafted web request containing special ANSI characters to cause log file poisoning. When a terminal user attempts to view the poisoned logs, this can tamper with the terminal and cause possible malicious code execution from the terminal user’s action.
Overview
  • CVE ID
  • CVE-2023-3997
  • Assigner
  • Splunk
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2023-07-31T16:16:19.911Z
  • Last Modified Date
  • 2024-04-10T00:53:01.880Z
References
History
Created Old Value New Value Data Type Notes
2024-06-24 20:27:59 Added to TrackCVE