Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
splunk splunk 6.1.1 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2014-5198
Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 6.1.x prior to 6.1.3 allows remote malicious users to inject arbitrary web script or HTML via the Referer HTTP header.
Splunk Splunk 6.1.1
Splunk Splunk 6.1.2
Splunk Splunk 6.1
4
CVSSv2
CVE-2014-5197
Directory traversal vulnerability in (1) Splunk Web or the (2) Splunkd HTTP Server in Splunk Enterprise 6.1.x prior to 6.1.3 allows remote authenticated users to read arbitrary files via a .. (dot dot) in a URI, related to search ids.
Splunk Splunk 6.1
Splunk Splunk 6.1.1
Splunk Splunk 6.1.2
4.3
CVSSv2
CVE-2014-8380
Cross-site scripting (XSS) vulnerability in Splunk 6.1.1 allows remote malicious users to inject arbitrary web script or HTML via the HTTP Referer Header in a "404 Not Found" response. NOTE: this vulnerability might exist because of a CVE-2010-2429 regression.
Splunk Splunk 6.1.1
1 EDB exploit
4.3
CVSSv2
CVE-2014-8303
Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 6.1.x prior to 6.1.4 and 6.0.x prior to 6.0.6 allows remote malicious users to inject arbitrary web script or HTML via vectors related to event parsing.
Splunk Splunk 6.0.3
Splunk Splunk 6.0.5
Splunk Splunk 6.1.1
Splunk Splunk 6.1.2
Splunk Splunk 6.1.3
Splunk Splunk 6.0
Splunk Splunk 6.0.1
Splunk Splunk 6.0.2
Splunk Splunk 6.0.4
Splunk Splunk 6.1
3.5
CVSSv2
CVE-2014-8302
Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 6.1.x prior to 6.1.4, 6.0.x prior to 6.0.6, and 5.0.x prior to 5.0.10 allows remote malicious users to inject arbitrary web script or HTML via vectors related to dashboard.
Splunk Splunk 5.0
Splunk Splunk 5.0.2
Splunk Splunk 5.0.9
Splunk Splunk 6.0.0
Splunk Splunk 6.0.5
Splunk Splunk 6.1.1
Splunk Splunk 6.1.3
Splunk Splunk 6.0.1
Splunk Splunk 6.0.2
Splunk Splunk 6.0.3
Splunk Splunk 6.0.4
Splunk Splunk 5.0.4
Splunk Splunk 5.0.5
Splunk Splunk 5.0.6
Splunk Splunk 5.0.7
Splunk Splunk 5.0.1
Splunk Splunk 5.0.3
Splunk Splunk 5.0.8
Splunk Splunk 6.0
Splunk Splunk 6.1
Splunk Splunk 6.1.2
4.3
CVSSv2
CVE-2014-5466
Cross-site scripting (XSS) vulnerability in the Dashboard in Splunk Web in Splunk Enterprise 6.1.x prior to 6.1.4, 6.0.x prior to 6.0.7, and 5.0.x prior to 5.0.10 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors.
Splunk Splunk 5.0.4
Splunk Splunk 5.0.2
Splunk Splunk 6.0.2
Splunk Splunk 6.0.4
Splunk Splunk 6.1.4
Splunk Splunk 5.0.9
Splunk Splunk 5.0.8
Splunk Splunk 5.0.7
Splunk Splunk 5.0.6
Splunk Splunk 6.0.6
Splunk Splunk 6.1
Splunk Splunk 6.1.1
Splunk Splunk 6.1.2
Splunk Splunk 5.0.1
Splunk Splunk 5.0
Splunk Splunk 6.0
Splunk Splunk 6.0.1
Splunk Splunk 5.0.5
Splunk Splunk 5.0.3
Splunk Splunk 6.0.3
Splunk Splunk 6.0.5
Splunk Splunk 6.1.3
4.3
CVSSv2
CVE-2015-6515
Cross-site scripting (XSS) vulnerability in Splunk Web in Splunk Enterprise 6.2.x prior to 6.2.4, 6.1.x prior to 6.1.8, 6.0.x prior to 6.0.9, and 5.0.x prior to 5.0.13 and Splunk Light 6.2.x prior to 6.2.4 allows remote malicious users to inject arbitrary web script or HTML via a...
Splunk Splunk 5.0.12
Splunk Splunk 6.0.0
Splunk Splunk 6.0.1
Splunk Splunk 6.0.2
Splunk Splunk 6.1.7
Splunk Splunk 6.2.0
Splunk Splunk 6.2.3
Splunk Splunk 6.2.2
Splunk Splunk 5.0.4
Splunk Splunk 5.0.5
Splunk Splunk 5.0.6
Splunk Splunk 5.0.7
Splunk Splunk 6.0.8
Splunk Splunk 6.1.0
Splunk Splunk 6.1.1
Splunk Splunk 6.1.2
Splunk Splunk 5.0.1
Splunk Splunk 5.0.3
Splunk Splunk 5.0.8
Splunk Splunk 5.0.10
Splunk Splunk 6.0.4
Splunk Splunk 6.0.6
3.5
CVSSv2
CVE-2016-4858
Cross-site scripting vulnerability in Splunk Enterprise 6.4.x before 6.4.2, Splunk Enterprise 6.3.x before 6.3.6, Splunk Enterprise 6.2.x before 6.2.10, Splunk Enterprise 6.1.x before 6.1.11, Splunk Enterprise 6.0.x before 6.0.12, Splunk Enterprise 5.0.x before 5.0.16 and Splunk ...
Splunk Splunk 5.0.15
Splunk Splunk 5.0.1
Splunk Splunk 5.0.0
Splunk Splunk
Splunk Splunk 6.0.11
Splunk Splunk 6.1.10
Splunk Splunk 6.1.9
Splunk Splunk 6.1.8
Splunk Splunk 6.1.7
Splunk Splunk 6.2.3
Splunk Splunk 6.2.2
Splunk Splunk 6.2.1
Splunk Splunk 6.2.0
Splunk Splunk 5.0.14
Splunk Splunk 5.0.12
Splunk Splunk 5.0.5
Splunk Splunk 5.0.3
Splunk Splunk 6.0.9
Splunk Splunk 6.0.7
Splunk Splunk 6.0.2
Splunk Splunk 6.0.0
Splunk Splunk 6.1.2
5.8
CVSSv2
CVE-2016-4859
Open redirect vulnerability in Splunk Enterprise 6.4.x before 6.4.3, Splunk Enterprise 6.3.x before 6.3.6, Splunk Enterprise 6.2.x before 6.2.10, Splunk Enterprise 6.1.x before 6.1.11, Splunk Enterprise 6.0.x before 6.0.12, Splunk Enterprise 5.0.x before 5.0.16 and Splunk Light b...
Splunk Splunk 5.0.11
Splunk Splunk 5.0.10
Splunk Splunk 5.0.9
Splunk Splunk 5.0.8
Splunk Splunk 6.0.7
Splunk Splunk 6.0.6
Splunk Splunk 6.0.5
Splunk Splunk 6.0.4
Splunk Splunk 6.1.4
Splunk Splunk 6.1.3
Splunk Splunk 6.1.0
Splunk Splunk 6.2.4
Splunk Splunk 5.0.15
Splunk Splunk 5.0.13
Splunk Splunk 5.0.6
Splunk Splunk 5.0.4
Splunk Splunk
Splunk Splunk 6.0.10
Splunk Splunk 6.0.8
Splunk Splunk 6.0.3
Splunk Splunk 6.0.1
Splunk Splunk 6.1.7
10
CVSSv2
CVE-2016-10126
Splunk Web in Splunk Enterprise 5.0.x prior to 5.0.17, 6.0.x prior to 6.0.13, 6.1.x prior to 6.1.12, 6.2.x prior to 6.2.12, 6.3.x prior to 6.3.8, and 6.4.x prior to 6.4.4 allows remote malicious users to conduct HTTP request injection attacks and obtain sensitive REST API authent...
Splunk Splunk 5.0.1
Splunk Splunk 5.0.10
Splunk Splunk 5.0.6
Splunk Splunk 5.0.7
Splunk Splunk 5.0.13
Splunk Splunk 5.0.14
Splunk Splunk 5.0.2
Splunk Splunk 5.0.3
Splunk Splunk 5.0.11
Splunk Splunk 5.0.12
Splunk Splunk 5.0.8
Splunk Splunk 5.0.9
Splunk Splunk 5.0.15
Splunk Splunk 5.0.16
Splunk Splunk 5.0.0
Splunk Splunk 5.0.4
Splunk Splunk 5.0.5
Splunk Splunk 6.0.9
Splunk Splunk 6.0.10
Splunk Splunk 6.0.4
Splunk Splunk 6.0.5
Splunk Splunk 6.0.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33228
CVE-2024-20361
log injection
bypass
CVE-2024-4985
CVE-2024-35223
CVE-2024-29849
CVE-2024-31893
IMAP
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »