CVE-2022-27183
06.05.2022, 17:15
The Monitoring Console app configured in Distributed mode allows for a Reflected XSS in a query parameter in Splunk Enterprise versions before 8.1.4. The Monitoring Console app is a bundled app included in Splunk Enterprise, not for download on SplunkBase, and not installed on Splunk Cloud Platform instances. Note that the Cloud Monitoring Console is not impacted.
Vendor | Product | Version |
---|---|---|
splunk | splunk | 8.1.0 ≤ 𝑥 < 8.1.4 |
𝑥
= Vulnerable software versions
References