QID 377937

Date Published: 2023-02-08

QID 377937: Splunk Enterprise Multiple Vulnerabilities (svd-2022-0804)

Splunk Enterprise captures, indexes and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards, and visualizations.

Splunk Enterprise is affected by multiple vulnerabilities:

Affected Versions:
Splunk Enterprise 8.1.10 and lower
Splunk Enterprise 8.2.0 to 8.2.7
Splunk Enterprise 9.0.0

QID Detection Logic(Authenticated)
It checks for vulnerable version of Splunk Enterprise .

Successful exploitation of this vulnerability could lead to a security breach or could affect integrity, availability, and confidentiality.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 10 severity.
  • Solution
    Vendor has released updated versions to fix these vulnerabilities. Please refer svd-2022-0804 for more details.

    CVEs related to QID 377937

    Software Advisories
    Advisory ID Software Component Link
    svd-2022-0804 URL Logo www.splunk.com/en_us/product-security/announcements/svd-2022-0804.html