First published: Wed Nov 16 2022(Updated: )
Karmasis Informatics Infraskope SIEM+ has an unauthenticated access vulnerability which could allow an unauthenticated attacker to modificate logs.
Credit: iletisim@usom.gov.tr cve@usom.gov.tr
Affected Software | Affected Version | How to fix |
---|---|---|
Karmasis Infraskope Siem+ | <7.10.00 | |
Karmasis Infraskope Security Event Manager | <7.10.00 |
Update the Karmasis Informatics Infraskope SIEM+ software to >= 7.10.xx.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-24036 is a vulnerability found in Karmasis Informatics Infraskope SIEM+ that allows an unauthenticated attacker to modify logs.
CVE-2022-24036 has a severity level of 8.6 (high).
CVE-2022-24036 affects the unauthenticated access vulnerability in Karmasis Informatics Infraskope SIEM+, allowing an attacker to modify logs without authentication.
Karmasis Informatics Infraskope Security Event Manager versions up to and excluding 7.10.00 are affected by CVE-2022-24036.
To fix CVE-2022-24036, it is recommended to update Karmasis Informatics Infraskope SIEM+ to version 7.10.00 or later.