CVE-2022-24036

HIGH

Karmasis Informatics Infraskope SIEM+ - Info Disclosure

Title source: llm
STIX 2.1

Description

Karmasis Informatics Infraskope SIEM+ has an unauthenticated access vulnerability which could allow an unauthenticated attacker to modificate logs.

References (3)

Core 3
Core References
Third Party Advisory government-resource broken-link
https://www.usom.gov.tr/bildirim/tr-22-0691

Scores

CVSS v3 8.6
EPSS 0.0050
EPSS Percentile 38.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:H/A:L

Details

CWE
CWE-284
Status published
Products (2)
karmasis/infraskope_siem\+ < 7.10.00
Karmasis Informatics/Infraskope SIEM+ < 7.10.xx
Published Nov 16, 2022
Tracked Since Feb 18, 2026