Логотип exploitDog
bind:CVE-2022-43570
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-43570

Количество 2

Количество 2

nvd логотип

CVE-2022-43570

больше 3 лет назад

In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, an authenticated user can perform an extensible markup language (XML) external entity (XXE) injection via a custom View. The XXE injection causes Splunk Web to embed incorrect documents into an error.

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-wcm6-qr3c-r573

больше 3 лет назад

In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, an authenticated user can perform an extensible markup language (XML) external entity (XXE) injection via a custom View. The XXE injection causes Splunk Web to embed incorrect documents into an error.

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2022-43570

In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, an authenticated user can perform an extensible markup language (XML) external entity (XXE) injection via a custom View. The XXE injection causes Splunk Web to embed incorrect documents into an error.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
github логотип
GHSA-wcm6-qr3c-r573

In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, an authenticated user can perform an extensible markup language (XML) external entity (XXE) injection via a custom View. The XXE injection causes Splunk Web to embed incorrect documents into an error.

CVSS3: 6.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу