Cross-site scripting (XSS) vulnerability in Splunk 4.0 up to and including 4.1.2, when Internet Explorer is used, allows remote malicious users to inject arbitrary web script or HTML via the HTTP Referer in a "404 Not Found" response.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
splunk splunk 4.0.8 |
||
splunk splunk 4.0.7 |
||
splunk splunk 4.1.2 |
||
splunk splunk 4.1.1 |
||
splunk splunk 4.0.10 |
||
splunk splunk 4.0.9 |
||
splunk splunk 4.0.2 |
||
splunk splunk 4.0.1 |
||
splunk splunk 4.0.6 |
||
splunk splunk 4.0.5 |
||
splunk splunk 4.1 |
||
splunk splunk 4.0 |
||
splunk splunk 4.0.11 |
||
splunk splunk 4.0.4 |
||
splunk splunk 4.0.3 |