A potential vulnerability in Splunk Enterprise's implementation of DUO MFA allows for bypassing the MFA verification in Splunk Enterprise versions before 8.1.6. The potential vulnerability impacts Splunk Enterprise instances configured to use DUO MFA and does not impact or affect a DUO product or service.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Splunk

Published: 2022-05-06T16:34:33

Updated: 2024-08-03T20:19:20.123Z

Reserved: 2021-11-03T00:00:00

Link: CVE-2021-26253

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2022-05-06T17:15:08.443

Modified: 2022-08-01T12:13:10.713

Link: CVE-2021-26253

cve-icon Redhat

No data.