Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

nvd логотип

CVE-2025-12969

8 месяцев назад

Fluent Bit in_forward input plugin does not properly enforce the security.users authentication mechanism under certain configuration conditions. This allows remote attackers with network access to the Fluent Bit instance exposing the forward input to send unauthenticated data. By bypassing authentication controls, attackers can inject forged log records, flood alerting systems, or manipulate routing decisions, compromising the authenticity and integrity of ingested logs.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2025-12969

8 месяцев назад

CVE-2025-12969

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-2949-r76x-4vc4

8 месяцев назад

Fluent Bit in_forward input plugin does not properly enforce the security.users authentication mechanism under certain configuration conditions. This allows remote attackers with network access to the Fluent Bit instance exposing the forward input to send unauthenticated data. By bypassing authentication controls, attackers can inject forged log records, flood alerting systems, or manipulate routing decisions, compromising the authenticity and integrity of ingested logs.

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2025-15406

8 месяцев назад

Уязвимость плагина in_forward инструмента для сбора и обработки логов Fluent Bit, позволяющая нарушителю обойти существующие ограничения безопасности и получить доступ к системе

CVSS3: 6.5
EPSS: Низкий
redos логотип

ROS-20260319-73-0010

5 месяцев назад

Уязвимость fluent-bit

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-12969

Fluent Bit in_forward input plugin does not properly enforce the security.users authentication mechanism under certain configuration conditions. This allows remote attackers with network access to the Fluent Bit instance exposing the forward input to send unauthenticated data. By bypassing authentication controls, attackers can inject forged log records, flood alerting systems, or manipulate routing decisions, compromising the authenticity and integrity of ingested logs.

CVSS3: 6.5
1%
Низкий
8 месяцев назад
msrc логотип
CVE-2025-12969

CVE-2025-12969

CVSS3: 6.5
1%
Низкий
8 месяцев назад
github логотип
GHSA-2949-r76x-4vc4

Fluent Bit in_forward input plugin does not properly enforce the security.users authentication mechanism under certain configuration conditions. This allows remote attackers with network access to the Fluent Bit instance exposing the forward input to send unauthenticated data. By bypassing authentication controls, attackers can inject forged log records, flood alerting systems, or manipulate routing decisions, compromising the authenticity and integrity of ingested logs.

CVSS3: 6.5
1%
Низкий
8 месяцев назад
fstec логотип
BDU:2025-15406

Уязвимость плагина in_forward инструмента для сбора и обработки логов Fluent Bit, позволяющая нарушителю обойти существующие ограничения безопасности и получить доступ к системе

CVSS3: 6.5
1%
Низкий
8 месяцев назад
redos логотип
ROS-20260319-73-0010

Уязвимость fluent-bit

CVSS3: 6.5
1%
Низкий
5 месяцев назад

Уязвимостей на страницу