CVE-2017-12572
EUVD-2017-414405.08.2017, 21:29
Persistent Cross Site Scripting (XSS) exists in Splunk Enterprise 6.5.x before 6.5.2, 6.4.x before 6.4.6, and 6.3.x before 6.3.9 and Splunk Light before 6.5.2, with exploitation requiring administrative access, aka SPL-134104.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| splunk | splunk | 6.3.0 |
| splunk | splunk | 6.3.1 |
| splunk | splunk | 6.3.2 |
| splunk | splunk | 6.3.3 |
| splunk | splunk | 6.3.4 |
| splunk | splunk | 6.3.5 |
| splunk | splunk | 6.3.6 |
| splunk | splunk | 6.3.7 |
| splunk | splunk | 6.3.8 |
| splunk | splunk | 6.4.0 |
| splunk | splunk | 6.4.1 |
| splunk | splunk | 6.4.2 |
| splunk | splunk | 6.4.3 |
| splunk | splunk | 6.4.4 |
| splunk | splunk | 6.4.5 |
| splunk | splunk | 6.5.0 |
| splunk | splunk | 6.5.0 |
| splunk | splunk | 6.5.1 |
| splunk | splunk | 6.5.1 |
𝑥
= Vulnerable software versions