Security Advisory

CVE-2025-0367

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2025-01-30 17:04:49
Last updated 2025-02-12 19:51:11
Assigner Splunk
CVSS score 6.5
State PUBLISHED

Description

In versions 3.1.0 and lower of the Splunk Supporting Add-on for Active Directory, also known as SA-ldapsearch, a vulnerable regular expression pattern could lead to a Regular Expression Denial of Service (ReDoS) attack.