Skip to main content

Splunk Multiple Vulnerabilities

Last Update Date: 6 May 2015 10:07 Release Date: 6 May 2015 3842 Views

RISK: Medium Risk

TYPE: Servers - Other Servers

TYPE: Other Servers

Several vulnerabilities were identified in Splunk. A remote user can conduct cross-site scripting attacks and obtain potentially sensitive information on the target system.


Impact

  • Cross-Site Scripting
  • Remote Code Execution
  • Information Disclosure

System / Technologies affected

  • Splunk Enterprise versions prior to 5.0.12, 6.0.9, 6.1.7, 6.2.3
  • Splunk Light versions prior to 6.2.3

 


Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • The vendor has issued a fix (Enterprise 5.0.12, 6.0.9, 6.1.7, 6.2.3; Light 6.2.3).

Vulnerability Identifier


Source


Related Link