Vulnerabilidades em Splunk

283 resultados
Análise Vexday

O portfólio de vulnerabilidades do Splunk soma 170 CVEs catalogadas, com uma taxa de exploração ativa que supera a média geral do catálogo em 1,3×, sinal de que as falhas nessa plataforma atraem atenção real de agentes maliciosos. O CVE-2026-20253, único item confirmado no CISA KEV, apresenta EPSS de 0,8817 — indicando altíssima probabilidade de exploração —, e deve ser tratado como prioridade imediata de correção. O tipo de falha mais recorrente, CWE-79 (cross-site scripting), sugere que superfícies de interface com o usuário seguem sendo o vetor mais frequente no produto. A chegada de 19 novas CVEs nos últimos 90 dias, somada à existência de 3 vulnerabilidades com PoC pública, reforça a necessidade de ciclos curtos de patching e monitoramento contínuo do ambiente.

CVE-2023-22938MEDIUMPermissions Validation Failure in the ‘sendemail’ REST API Endpoint in Splunk EnterpriseEPSS 0.4%CVE-2025-20367MEDIUMReflected Cross-site Scripting (XSS) in '/app/search/table' endpoint through the 'dataset.command' parameter on Splunk EnterpriseEPSS 0.4%CVE-2026-76355HIGHUnauthenticated Information Disclosure through an Edge Processor Service Endpoint in Splunk EnterpriseEPSS 0.4%CVE-2024-36996MEDIUMInformation Disclosure of user namesEPSS 0.4%CVE-2025-20388LOWBlind Server Side Request Forgery (SSRF) through Distributed Search Peers in Splunk EnterpriseEPSS 0.4%CVE-2026-20255MEDIUMImproper Input Validation through Classic Dashboards in Splunk EnterpriseEPSS 0.4%CVE-2026-76253HIGHPrivilege Escalation through Scheduled Search Alert Action Configuration in Splunk EnterpriseEPSS 0.4%CVE-2023-32711MEDIUMPersistent Cross-Site Scripting (XSS) through a URL Validation Bypass within a Dashboard ViewEPSS 0.4%CVE-2026-76391HIGHImproper Privilege Management through Agent Run History in Splunk AI ToolkitEPSS 0.3%CVE-2026-20252HIGHServer-Side Request Forgery (SSRF) through Dashboard Studio PDF Export in Splunk EnterpriseEPSS 0.3%CVE-2023-32712HIGHUnauthenticated Log Injection in Splunk EnterpriseEPSS 0.3%CVE-2024-45734MEDIUMLow Privilege User can View Images on the Host Machine by using the PDF Export feature in Splunk Classic DashboardEPSS 0.3%CVE-2024-45735MEDIUMImproper Access Control for low-privileged user in Splunk Secure Gateway AppEPSS 0.3%CVE-2026-76321HIGHSPL Injection through Nearby Event Searches in Splunk EnterpriseEPSS 0.3%CVE-2026-76389HIGHServer-Side Request Forgery (SSRF) through the REST API in Cisco Talos Intelligence for Enterprise Security CloudEPSS 0.3%CVE-2026-76335HIGHRemote Code Execution (RCE) through Splunk Web Manager Configuration in Splunk EnterpriseEPSS 0.3%CVE-2025-20325LOWSensitive Information Disclosure in the SHCConfig logging channel in Clustered Deployments in Splunk EnterpriseEPSS 0.3%CVE-2026-76357HIGHRemote Code Execution (RCE) through Path Traversal in the REST API in Splunk SOAREPSS 0.3%CVE-2026-20138MEDIUMSensitive Information Disclosure in "_internal" index in Splunk EnterpriseEPSS 0.3%CVE-2026-20142MEDIUMSensitive Information Disclosure in "_internal" index in Splunk EnterpriseEPSS 0.3%