CVE-2024-22164

MEDIUM

Splunk Enterprise Security < 7.1.2 - Denial of Service via Investigation Attachment Endpoint

Title source: llm
STIX 2.1

Description

In Splunk Enterprise Security (ES) versions below 7.1.2, an attacker can use investigation attachments to perform a denial of service (DoS) to the Investigation. The attachment endpoint does not properly limit the size of the request which lets an attacker cause the Investigation to become inaccessible.

Scores

CVSS v3 4.3
EPSS 0.0015
EPSS Percentile 35.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-770 CWE-400
Status published
Products (1)
splunk/enterprise_security 7.1.0 - 7.1.2
Published Jan 09, 2024
Tracked Since Feb 18, 2026