6.1
CVSSv3

CVE-2023-22932

Published: 14/02/2023 Updated: 10/04/2024
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

In Splunk Enterprise 9.0 versions prior to 9.0.4, a View allows for Cross-Site Scripting (XSS) through the error message in a Base64-encoded image. The vulnerability affects instances with Splunk Web enabled. It does not affect Splunk Enterprise versions below 9.0.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

splunk splunk cloud platform

splunk splunk