A potential vulnerability in Splunk Enterprise's implementation of DUO MFA allows for bypassing the MFA verification in Splunk Enterprise versions before 8.1.6. The potential vulnerability impacts Splunk Enterprise instances configured to use DUO MFA and does not impact or affect a DUO product or service.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Splunk
Published: 2022-05-06T16:34:33
Updated: 2024-08-03T20:19:20.123Z
Reserved: 2021-11-03T00:00:00
Link: CVE-2021-26253
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-05-06T17:15:08.443
Modified: 2024-11-21T05:55:59.187
Link: CVE-2021-26253
Redhat
No data.