Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Splunk Enterprise — Vulnerabilities & Security Advisories 221

All 221 CVE vulnerabilities found in Splunk Enterprise, with AI-generated Chinese analysis, references, and POCs.

This page aggregates vulnerabilities for Splunk Enterprise, focusing on the Splunk vendor and common weakness types. It collects security advisories, including denial-of-service conditions, authentication flaws, and injection issues, covering the period from the product's initial release through the most recent updates. Readers can track the vendor's published advisories, understand specific weakness classes affecting this product line, and review the historical vulnerability record to assess long-term security trends. The data is organized by vulnerability type and date, enabling efficient filtering without requiring knowledge of individual CVE identifiers.

Vendor: Splunk Inc.

CVE ID Title CVSS Severity Published
CVE-2024-53244 Risky command safeguards bypass in “/en-US/app/search/report“ endpoint through “s“ parameter CWE-200 5.7 Medium 2024-12-10
CVE-2024-53246 Sensitive Information Disclosure through SPL commands CWE-319 5.3 Medium 2024-12-10
CVE-2024-53243 Information Disclosure in Mobile Alert Responses in Splunk Secure Gateway CWE-200 4.3 Medium 2024-12-10
CVE-2024-53245 Information Disclosure due to Username Collision with a Role that has the same Name as the User CWE-200 3.1 Low 2024-12-10
CVE-2024-53247 Remote Code Execution through Deserialization of Untrusted Data in Splunk Secure Gateway app CWE-502 8.8 High 2024-12-10
CVE-2024-45739 Sensitive information disclosure in AdminManager logging channel CWE-200 4.9 Medium 2024-10-14
CVE-2024-45738 Sensitive information disclosure in REST_Calls logging channel CWE-200 4.9 Medium 2024-10-14
CVE-2024-45737 Maintenance mode state change of App Key Value Store (KVStore) through Cross-Site Request Forgery (CSRF) CWE-352 4.3 Medium 2024-10-14
CVE-2024-45732 Low-privileged user could run search as nobody in SplunkDeploymentServerConfig app CWE-862 7.1 High 2024-10-14
CVE-2024-45733 Remote Code Execution (RCE) due to insecure session storage configuration in Splunk Enterprise on Windows CWE-502 8.8 High 2024-10-14
CVE-2024-45736 Improperly Formatted ‘INGEST_EVAL’ Parameter Crashes Splunk Daemon CWE-400 6.5 Medium 2024-10-14
CVE-2024-45741 Persistent Cross-Site Scripting (XSS) via props.conf on Splunk Enterprise CWE-79 5.4 Medium 2024-10-14
CVE-2024-45734 Low Privilege User can View Images on the Host Machine by using the PDF Export feature in Splunk Classic Dashboard CWE-284 4.3 Medium 2024-10-14
CVE-2024-45740 Persistent Cross-Site Scripting (XSS) through Scheduled Views on Splunk Enterprise CWE-79 5.4 Medium 2024-10-14
CVE-2024-45731 Potential Remote Command Execution (RCE) through arbitrary file write to Windows system root directory when Splunk Enterprise for Windows is installed on a separate disk CWE-23 8.0 High 2024-10-14
CVE-2024-45735 Improper Access Control for low-privileged user in Splunk Secure Gateway App CWE-284 4.3 Medium 2024-10-14
CVE-2024-36997 Persistent Cross-site Scripting (XSS) in conf-web/settings REST endpoint CWE-79 4.6 High 2024-07-01
CVE-2024-36993 Persistent Cross-site Scripting (XSS) in Web Bulletin CWE-79 5.4 Medium 2024-07-01
CVE-2024-36995 Low-privileged user could create experimental items CWE-862 4.3 Medium 2024-07-01
CVE-2024-36991 Path Traversal on the “/modules/messaging/“ endpoint in Splunk Enterprise on Windows CWE-35 7.5 High 2024-07-01
CVE-2024-36982 Denial of Service through null pointer reference in “cluster/config” REST endpoint CWE-476 7.5 High 2024-07-01
CVE-2024-36990 Denial of Service (DoS) on the datamodel/web REST endpoint CWE-835 6.5 Medium 2024-07-01
CVE-2024-36985 Remote Code Execution (RCE) through an external lookup due to “copybuckets.py“ script in the “splunk_archiver“ application in Splunk Enterprise CWE-687 8.8 High 2024-07-01
CVE-2024-36992 Persistent Cross-site Scripting (XSS) in Dashboard Elements CWE-79 5.4 Medium 2024-07-01
CVE-2024-36984 Remote Code Execution through Serialized Session Payload in Splunk Enterprise on Windows CWE-502 8.8 High 2024-07-01
CVE-2024-36983 Command Injection using External Lookups CWE-77 8.0 High 2024-07-01
CVE-2024-36986 Risky command safeguards bypass through Search ID query in Analytics Workspace CWE-200 6.3 Medium 2024-07-01
CVE-2024-36996 Information Disclosure of user names CWE-204 5.3 Medium 2024-07-01
CVE-2024-36994 Persistent Cross-site Scripting (XSS) in Dashboard Elements CWE-79 5.4 Medium 2024-07-01
CVE-2024-36989 Low-privileged user could create notifications in Splunk Web Bulletin Messages CWE-284 6.5 High 2024-07-01

All 221 known CVE vulnerabilities affecting Splunk Enterprise with full Chinese analysis, references, and POCs where available.