Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2393-5754-m287

Опубликовано: 07 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

A potential vulnerability in Splunk Enterprise's implementation of DUO MFA allows for bypassing the MFA verification in Splunk Enterprise versions before 8.1.6. The potential vulnerability impacts Splunk Enterprise instances configured to use DUO MFA and does not impact or affect a DUO product or service.

A potential vulnerability in Splunk Enterprise's implementation of DUO MFA allows for bypassing the MFA verification in Splunk Enterprise versions before 8.1.6. The potential vulnerability impacts Splunk Enterprise instances configured to use DUO MFA and does not impact or affect a DUO product or service.

EPSS

Процентиль: 43%
0.00204
Низкий

8.1 High

CVSS3

Дефекты

CWE-287

Связанные уязвимости

CVSS3: 8.1
nvd
больше 3 лет назад

A potential vulnerability in Splunk Enterprise's implementation of DUO MFA allows for bypassing the MFA verification in Splunk Enterprise versions before 8.1.6. The potential vulnerability impacts Splunk Enterprise instances configured to use DUO MFA and does not impact or affect a DUO product or service.

EPSS

Процентиль: 43%
0.00204
Низкий

8.1 High

CVSS3

Дефекты

CWE-287