Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Splunk Enterprise — Vulnerabilities & Security Advisories 221

All 221 CVE vulnerabilities found in Splunk Enterprise, with AI-generated Chinese analysis, references, and POCs.

This page documents known weaknesses in Splunk Enterprise, a software product developed by Splunk Inc. It aggregates vulnerability data associated with Common Weakness Enumeration classifications and specific software tags relevant to the application’s architecture and deployment models. The content covers publicly disclosed security issues and internal advisory reports spanning from the initial release of the software through the present day. Readers can use this resource to track a vendor's advisories, understand the impact and characteristics of a specific weakness class, or look up a product's vulnerability history. By consolidating information from multiple sources, this aggregation provides a comprehensive view of the security posture of Splunk Enterprise over time. The data includes details on affected versions, remediation steps, and references to external security bulletins. This approach facilitates better risk assessment for security professionals managing Splunk deployments. It allows users to identify patterns in defect discovery and prioritize patching efforts based on the severity and prevalence of the vulnerabilities. The page serves as a neutral repository for factual security information, enabling users to make informed decisions about system updates and configuration changes. It does not interpret the severity levels but presents the available evidence for each reported issue.

Vendor: Splunk Inc.

CVE ID Title CVSS Severity Published
CVE-2024-36987 Insecure File Upload in the indexing/preview REST endpoint CWE-434 4.3 Medium 2024-07-01
CVE-2024-29945 Splunk Authentication Token Exposure in Debug Log in Splunk Enterprise CWE-532 7.2 High 2024-03-27
CVE-2024-29946 Risky command safeguards bypass in Dashboard Examples Hub CWE-20 8.1 High 2024-03-27
CVE-2024-23676 Sensitive Information Disclosure of Index Metrics through “mrollup” SPL Command CWE-20 4.6 Medium 2024-01-22
CVE-2024-23678 Deserialization of Untrusted Data on Splunk Enterprise for Windows through Path Traversal from Separate Disk Partition CWE-20 7.5 High 2024-01-22
CVE-2024-23677 Server Response Disclosure in RapidDiag Salesforce.com Log File CWE-532 4.3 Medium 2024-01-22
CVE-2024-23675 Splunk App Key Value Store (KV Store) Improper Handling of Permissions Leads to KV Store Collection Deletion CWE-284 6.5 Medium 2024-01-22
CVE-2023-46213 Cross-site Scripting (XSS) on “Show Syntax Highlighted” View in Search Page CWE-79 4.8 Medium 2023-11-16
CVE-2023-46214 Remote code execution (RCE) in Splunk Enterprise through Insecure XML Parsing CWE-91 8.0 High 2023-11-16
CVE-2023-40597 Absolute Path Traversal in Splunk Enterprise Using runshellscript.py CWE-36 7.8 High 2023-08-30
CVE-2023-40596 Splunk Enterprise on Windows Privilege Escalation due to Insecure OPENSSLDIR Build Definition Reference in DLL CWE-665 7.0 High 2023-08-30
CVE-2023-40594 Denial of Service (DoS) via the ‘printf’ Search Function CWE-400 6.5 Medium 2023-08-30
CVE-2023-40593 Denial of Service (DoS) in Splunk Enterprise Using a Malformed SAML Request CWE-400 6.3 Medium 2023-08-30
CVE-2023-40592 Reflected Cross-site Scripting (XSS) on "/app/search/table" web endpoint CWE-79 8.4 High 2023-08-30
CVE-2023-40595 Remote Code Execution via Serialized Session Payload CWE-502 8.8 High 2023-08-30
CVE-2023-40598 Command Injection in Splunk Enterprise Using External Lookups CWE-77 8.5 High 2023-08-30
CVE-2023-32709 Low-privileged User can View Hashed Default Splunk Password CWE-285 4.3 Medium 2023-06-01
CVE-2023-32707 ‘edit_user’ Capability Privilege Escalation CWE-285 8.8 High 2023-06-01
CVE-2023-32712 Unauthenticated Log Injection in Splunk Enterprise CWE-117 8.6 High 2023-06-01
CVE-2023-32716 Denial of Service via the 'dump' SPL command CWE-754 6.5 Medium 2023-06-01
CVE-2023-32710 Information Disclosure via the ‘copyresults’ SPL Command CWE-200 4.8 Medium 2023-06-01
CVE-2023-32717 Role-based Access Control (RBAC) Bypass on '/services/indexing/preview' REST Endpoint Can Overwrite Search Results CWE-285 4.3 Medium 2023-06-01
CVE-2023-32706 Denial Of Service due to Untrusted XML Tag in XML Parser within SAML Authentication CWE-611 7.7 High 2023-06-01
CVE-2023-32711 Persistent Cross-Site Scripting (XSS) through a URL Validation Bypass within a Dashboard View CWE-79 5.4 Medium 2023-06-01
CVE-2023-32708 HTTP Response Splitting via the ‘rest’ SPL Command CWE-113 7.2 High 2023-06-01
CVE-2023-22939 SPL Command Safeguards Bypass via the ‘map’ SPL Command in Splunk Enterprise CWE-20 8.1 High 2023-02-14
CVE-2023-22938 Permissions Validation Failure in the ‘sendemail’ REST API Endpoint in Splunk Enterprise CWE-285 4.3 Medium 2023-02-14
CVE-2023-22937 Unnecessary File Extensions Allowed by Lookup Table Uploads in Splunk Enterprise CWE-20 4.3 Medium 2023-02-14
CVE-2023-22933 Persistent Cross-Site Scripting through the ‘module’ Tag in a View in Splunk Enterprise CWE-79 8.0 High 2023-02-14
CVE-2023-22932 Persistent Cross-Site Scripting through a Base64-encoded Image in a View in Splunk Enterprise CWE-79 8.0 High 2023-02-14

All 221 known CVE vulnerabilities affecting Splunk Enterprise with full Chinese analysis, references, and POCs where available.