Known vulnerabilities in Splunk Enterprise 9.1.3 - page 11

Version: 9.1.3
Software CPE: cpe:2.3:a:splunk:splunk_enterprise:*:*:*:*:*:*:*:*
Total vulnerabilities: 226
Public exploits: 13
Known exploited (KEV): 3
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting Splunk Enterprise version 9.1.3 Splunk Enterprise 9.1.3 is affected by 226 vulnerabilities: 11 high, 136 medium, 79 low Critical High Medium Low

Vulnerabilities (226)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU93571 - Command injection
CVE-2024-36983
CWE-77 High
No
No
9.0.10, 9.1.5, 9.2.2 01.07.2024 SB2024070165
#VU93570 - Deserialization of Untrusted Data
CVE-2024-36984
CWE-502 Medium
No
No
9.0.10, 9.1.5, 9.2.2 01.07.2024 SB2024070165
#VU88828 - Resource exhaustion
CVE-2024-3651
CWE-400 Medium
No
No
9.0.9, 9.1.4, 9.1.8, 9.1.9, 9.2.1, 9.2.5, 9.2.6, 9.3.3, 9.3.4, 9.4.1, 9.4.2 19.04.2024 SB2024041905
SB2024041906
SB2024041907
and 112 more
#VU84849 - Command injection
CVE-2023-5752
CWE-77 Medium
No
No
9.0.9, 9.1.4, 9.2.1 28.12.2023 SB2023122824
SB2023122825
SB2023122826
and 32 more
#VU83631 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-47627
CWE-444 Medium
No
No
9.0.9, 9.1.4, 9.2.1 04.12.2023 SB2023120403
SB2023120406
SB2023120407
and 15 more
#VU82978 - Exposure of sensitive information to an unauthorized actor
CVE-2023-45803
CWE-200 Medium
No
No
9.0.9, 9.1.4, 9.1.6, 9.2.1, 9.2.3, 9.3.1 10.11.2023 SB2023111038
SB2023111040
SB2023111048
and 122 more
#VU82226 - Inefficient Regular Expression Complexity
CVE-2022-40896
CWE-1333 Medium
No
No
9.0.9, 9.1.4, 9.2.1 18.10.2023 SB20231018123
SB2023121111
SB2023122110
and 15 more
#VU82122 - Improper input validation
CVE-2023-35116
CWE-20 Low
No
No
9.0.9, 9.1.4, 9.2.1 17.10.2023 SB2023101771
SB20231018117
SB2023101925
and 45 more
#VU81322 - Exposure of sensitive information to an unauthorized actor
CVE-2023-43804
CWE-200 Low
Public exploit available
No
9.0.9, 9.1.4, 9.1.6, 9.2.1, 9.2.3, 9.3.1 02.10.2023 SB2023100251
SB2023100259
SB2023100260
and 112 more
#VU79296 - Insufficient Verification of Data Authenticity
CVE-2023-37920
CWE-345 Medium
No
No
9.0.8, 9.0.9, 9.1.3, 9.1.4, 9.2.1 09.08.2023 SB2023080939
SB20230821166
SB2023090820
and 89 more
#VU78448 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2023-37276
CWE-444 Medium
No
No
9.0.9, 9.1.4, 9.2.1 20.07.2023 SB2023072024
SB2024013032
SB2024021609
and 3 more
#VU77651 - Improper Control of Generation of Code ('Code Injection')
CVE-2023-33733
CWE-94 High
Public exploit available
No
9.0.10, 9.1.5, 9.2.2 22.06.2023 SB2023062280
SB2023062282
SB2023062845
and 6 more
#VU77164 - Exposure of sensitive information to an unauthorized actor
CVE-2023-32681
CWE-200 Medium
Public exploit available
No
9.0.9, 9.1.4, 9.2.1 12.06.2023 SB2023061224
SB2023061306
SB2023061514
and 114 more
#VU77107 - Incorrect Default Permissions
CVE-2023-2976
CWE-276 Low
No
No
9.0.9, 9.1.4, 9.2.1 08.06.2023 SB2023060849
SB2023071712
SB2023072512
and 157 more
#VU71379 - Incorrect Regular Expression
CVE-2022-40897
CWE-185 Medium
No
No
8.2.12, 9.0.6, 9.0.9, 9.1.1, 9.1.4, 9.2.1 20.01.2023 SB2023012008
SB2023012015
SB2023012016
and 99 more
#VU71377 - Improper input validation
CVE-2022-40898
CWE-20 Medium
No
No
9.0.9, 9.1.4, 9.2.1 20.01.2023 SB2023012007
SB2023012013
SB2023012014
and 22 more
#VU71137 - Incorrect Regular Expression
CVE-2022-40899
CWE-185 Medium
No
No
8.2.12, 9.0.6, 9.0.8, 9.0.9, 9.1.1, 9.1.3, 9.1.4, 9.2.1 12.01.2023 SB2023011234
SB2023011239
SB2023011240
and 26 more
#VU65864 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-36364
CWE-94 Medium
No
No
9.0.9, 9.1.4, 9.2.1 28.07.2022 SB2022072832
SB2022122706
SB2023062723
and 3 more
#VU50139 - Incorrect Default Permissions
CVE-2020-8908
CWE-276 Low
No
No
8.2.12, 9.0.6, 9.0.9, 9.1.1, 9.1.4, 9.2.1 11.12.2020 SB2020121114
SB2021031707
SB2021042104
and 62 more
#VU12886 - Uncontrolled Memory Allocation
CVE-2018-10237
CWE-789 Low
No
No
8.2.12, 9.0.6, 9.0.9, 9.1.1, 9.1.4, 9.2.1 21.05.2018 SB2018052310
SB2018083005
SB2018092411
and 43 more


Showing elements 201 - 220 out of 226