CVE-2024-22164

In Splunk Enterprise Security (ES) versions below 7.1.2, an attacker can use investigation attachments to perform a denial of service (DoS) to the Investigation. The attachment endpoint does not properly limit the size of the request which lets an attacker cause the Investigation to become inaccessible.
CVSS

No CVSS.

Configurations

No configuration.

Information

Published : 2024-01-09 17:15

Updated : 2024-01-10 22:15


NVD link : CVE-2024-22164

Mitre link : CVE-2024-22164


JSON object : View

Products Affected

No product.

CWE

No CWE.