CVE-2024-22164

CVSS V2 None CVSS V3 None
Description
In Splunk Enterprise Security (ES) versions below 7.1.2, an attacker can use investigation attachments to perform a denial of service (DoS) to the Investigation. The attachment endpoint does not properly limit the size of the request which lets an attacker cause the Investigation to become inaccessible.
Overview
  • CVE ID
  • CVE-2024-22164
  • Assigner
  • Splunk
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-01-09T17:01:07.832Z
  • Last Modified Date
  • 2024-04-10T00:52:44.162Z
History
Created Old Value New Value Data Type Notes
2024-06-26 09:13:49 Added to TrackCVE