CVE-2023-3997

CVE-2023-3997

Splunk SOAR versions 6.0.2 and earlier are indirectly affected by a potential vulnerability accessed through the user’s terminal. A third party can send Splunk SOAR a maliciously crafted web request containing special ANSI characters to cause log file poisoning. When a terminal user attempts to view the poisoned logs, this can tamper with the terminal and cause possible malicious code execution from the terminal user’s action.

Source: CVE-2023-3997

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다