CVE-2024-23678 - Exploiting Path Sanitization and Unsafe Deserialization in Splunk Enterprise for Windows
A new vulnerability, known as CVE-2024-23678, affects Splunk Enterprise for Windows versions below 9..8 and 9.1.3. As a highly popular platform for
CVE-2023-32707 - Splunk Enterprise and Cloud Platform Privilege Escalation Vulnerability
Hey folks! In this long read post, we will discuss a vulnerability known as CVE-2023-32707 discovered in popular log management and analysis software, Splunk Enterprise,
CVE-2022-43570 - XXE Injection Vulnerability in Splunk Enterprise Leads to Sensitive Data Leakage and System Compromise
The security vulnerability CVE-2022-43570 has been detected in various versions of Splunk Enterprise. This security flaw arises due to an XML External Entity (XXE) injection
CVE-2022-43562: Security Vulnerability in Splunk Enterprise - Improper Validation and Escaping of Host Header
Recently, a significant security vulnerability has been discovered in Splunk Enterprise versions below 8.1.12, 8.2.9, and 9..2, identified as CVE-2022-43562.
CVE-2022-43568: Beware of Reflected Cross Site Scripting in Splunk Enterprise - How to Protect Your System!
CVE-2022-43568 is a recently released vulnerability in Splunk Enterprise versions below 8.1.12, 8.2.9, and 9..2. This potentially dangerous vulnerability allows
Episode
00:00:00
00:00:00