Splunk Multiple Vulnerabilities
Last Update Date:
6 May 2015 10:07
Release Date:
6 May 2015
3842
Views
RISK: Medium Risk
TYPE: Servers - Other Servers
Several vulnerabilities were identified in Splunk. A remote user can conduct cross-site scripting attacks and obtain potentially sensitive information on the target system.
Impact
- Cross-Site Scripting
- Remote Code Execution
- Information Disclosure
System / Technologies affected
- Splunk Enterprise versions prior to 5.0.12, 6.0.9, 6.1.7, 6.2.3
- Splunk Light versions prior to 6.2.3
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- The vendor has issued a fix (Enterprise 5.0.12, 6.0.9, 6.1.7, 6.2.3; Light 6.2.3).
Vulnerability Identifier
Source
Related Link
Share with