QID 730308
Date Published: 2021-12-27
QID 730308: Splunk Enterprise and Light Open Redirect Vulnerability (SP-CAAAPQ6)
Splunk captures, indexes, and correlates real-time data in a searchable repository from which it can generate graphs, reports, alerts, dashboards, and visualizations.
CVE-2016-4859: Open redirect vulnerability in Splunk Enterprise.
Affected Versions:
Splunk Enterprise versions 6.4.x before 6.4.3
Splunk Enterprise versions 6.3.x before 6.3.6
Splunk Enterprise versions 6.2.x before 6.2.10
Splunk Enterprise versions 6.1.x before 6.1.11
Splunk Enterprise versions 6.0.x before 6.0.12
Splunk Enterprise versions 5.0.x before 5.0.16
Splunk Light versions prior to 6.4.3
QID Detection Logic:(Unauthenticated)
This QID checks for vulnerable versions of Splunk Enterprise and Light by making a request to the account/login/ URL.
Successful exploitation of this vulnerability allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
CVEs related to QID 730308
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| SP-CAAAPQ6 |
|