9.8
CVSSv3

CVE-2016-10126

Published: 10/01/2017 Updated: 18/01/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Splunk Web in Splunk Enterprise 5.0.x prior to 5.0.17, 6.0.x prior to 6.0.13, 6.1.x prior to 6.1.12, 6.2.x prior to 6.2.12, 6.3.x prior to 6.3.8, and 6.4.x prior to 6.4.4 allows remote malicious users to conduct HTTP request injection attacks and obtain sensitive REST API authentication-token information via unspecified vectors, aka SPL-128840.

Vulnerable Product Search on Vulmon Subscribe to Product

splunk splunk 5.0.1

splunk splunk 5.0.10

splunk splunk 5.0.6

splunk splunk 5.0.7

splunk splunk 5.0.13

splunk splunk 5.0.14

splunk splunk 5.0.2

splunk splunk 5.0.3

splunk splunk 5.0.11

splunk splunk 5.0.12

splunk splunk 5.0.8

splunk splunk 5.0.9

splunk splunk 5.0.15

splunk splunk 5.0.16

splunk splunk 5.0.0

splunk splunk 5.0.4

splunk splunk 5.0.5

splunk splunk 6.0.9

splunk splunk 6.0.10

splunk splunk 6.0.4

splunk splunk 6.0.5

splunk splunk 6.0.0

splunk splunk 6.0.1

splunk splunk 6.0.11

splunk splunk 6.0.12

splunk splunk 6.0.6

splunk splunk 6.0.7

splunk splunk 6.0.8

splunk splunk 6.0.2

splunk splunk 6.0.3

splunk splunk 6.1.11

splunk splunk 6.1.1

splunk splunk 6.1.7

splunk splunk 6.1.8

splunk splunk 6.1.3

splunk splunk 6.1.4

splunk splunk 6.1.2

splunk splunk 6.1.0

splunk splunk 6.1.9

splunk splunk 6.1.10

splunk splunk 6.1.5

splunk splunk 6.1.6

splunk splunk 6.2.10

splunk splunk 6.2.11

splunk splunk 6.2.0

splunk splunk 6.2.6

splunk splunk 6.2.7

splunk splunk 6.2.3

splunk splunk 6.2.4

splunk splunk 6.2.5

splunk splunk 6.2.1

splunk splunk 6.2.2

splunk splunk 6.2.8

splunk splunk 6.2.9

splunk splunk 6.3.3

splunk splunk 6.3.4

splunk splunk 6.3.7

splunk splunk 6.3.0

splunk splunk 6.3.5

splunk splunk 6.3.6

splunk splunk 6.3.1

splunk splunk 6.3.2

splunk splunk 6.4.2

splunk splunk 6.4.3

splunk splunk 6.4.0

splunk splunk 6.4.1