An issue was discovered in Siren Investigate before 12.1.7. Script variable whitelisting is insufficiently sandboxed.
The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
Link | Tags |
---|---|
https://docs.support.siren.io/siren-platform-user-guide/12.1/release-notes.html | release notes vendor advisory |
https://docs.support.siren.io/siren-platform-user-guide/13.0/release-notes.html | release notes vendor advisory |