In Splunk Enterprise versions lower than 9.0.6 and 8.2.12, a malicious actor can send a malformed security assertion markup language (SAML) request to the `/saml/acs` REST endpoint which can cause a denial of service through a crash or hang of the Splunk daemon.
2023-08-30T17:15:09.853
2024-11-21T08:19:47.123
Modified
CVSSv3.1: 6.3 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | splunk | splunk | < 8.2.12 | Yes |
Application | splunk | splunk | < 9.0.6 | Yes |
Application | splunk | splunk_cloud_platform | ≤ 9.0.2305.100 | Yes |