Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In Siren Investigate before 11.1.4, when enabling the cluster feature of the Siren Alert application, TLS verifications are disabled globally in the Siren Investigate main process.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Siren Investigate 代码问题漏洞
Vulnerability Description
Siren Investigate是爱尔兰Siren公司的Siren 平台的前端,允许创建仪表板、图表、链接分析、警报等。 Siren Investigate 中存在代码问题漏洞,该漏洞源于产品未能正确处理产品的cluster功能。攻击者可通过开启cluster属性导致主进程中全局禁用TLS验证。以下产品及版本受到影响:Siren Investigate 11.1.4 之前版本。
CVSS Information
N/A
Vulnerability Type
N/A