Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

nvd логотип

CVE-2025-12969

10 месяцев назад

Fluent Bit in_forward input plugin does not properly enforce the security.users authentication mechanism under certain configuration conditions. This allows remote attackers with network access to the Fluent Bit instance exposing the forward input to send unauthenticated data. By bypassing authentication controls, attackers can inject forged log records, flood alerting systems, or manipulate routing decisions, compromising the authenticity and integrity of ingested logs.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2025-12969

10 месяцев назад

CVE-2025-12969

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2949-r76x-4vc4

10 месяцев назад

Fluent Bit in_forward input plugin does not properly enforce the security.users authentication mechanism under certain configuration conditions. This allows remote attackers with network access to the Fluent Bit instance exposing the forward input to send unauthenticated data. By bypassing authentication controls, attackers can inject forged log records, flood alerting systems, or manipulate routing decisions, compromising the authenticity and integrity of ingested logs.

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2025-15406

10 месяцев назад

Уязвимость плагина in_forward инструмента для сбора и обработки логов Fluent Bit, позволяющая нарушителю обойти существующие ограничения безопасности и получить доступ к системе

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260319-80-0009

7 месяцев назад

Уязвимость fluent-bit

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260319-73-0010

7 месяцев назад

Уязвимость fluent-bit

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-12969

Fluent Bit in_forward input plugin does not properly enforce the security.users authentication mechanism under certain configuration conditions. This allows remote attackers with network access to the Fluent Bit instance exposing the forward input to send unauthenticated data. By bypassing authentication controls, attackers can inject forged log records, flood alerting systems, or manipulate routing decisions, compromising the authenticity and integrity of ingested logs.

CVSS3: 6.5
10 месяцев назад
msrc логотип
CVE-2025-12969

CVE-2025-12969

CVSS3: 6.5
10 месяцев назад
github логотип
GHSA-2949-r76x-4vc4

Fluent Bit in_forward input plugin does not properly enforce the security.users authentication mechanism under certain configuration conditions. This allows remote attackers with network access to the Fluent Bit instance exposing the forward input to send unauthenticated data. By bypassing authentication controls, attackers can inject forged log records, flood alerting systems, or manipulate routing decisions, compromising the authenticity and integrity of ingested logs.

CVSS3: 6.5
10 месяцев назад
fstec логотип
BDU:2025-15406

Уязвимость плагина in_forward инструмента для сбора и обработки логов Fluent Bit, позволяющая нарушителю обойти существующие ограничения безопасности и получить доступ к системе

CVSS3: 6.5
10 месяцев назад
redos логотип
ROS-20260319-80-0009

Уязвимость fluent-bit

CVSS3: 6.5
7 месяцев назад
redos логотип
ROS-20260319-73-0010

Уязвимость fluent-bit

CVSS3: 6.5
7 месяцев назад

Уязвимостей на страницу