Known vulnerabilities in Splunk Enterprise - page 19

Software CPE: cpe:2.3:a:splunk:splunk_enterprise:*:*:*:*:*:*:*:*
Total vulnerabilities: 472
Public exploits: 25
Known exploited (KEV): 5
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Splunk Enterprise Splunk Enterprise is affected by 472 known vulnerabilities: 28 high, 292 medium, 152 low Critical High Medium Low

Vulnerabilities (472)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU80344 - Inefficient Regular Expression Complexity
CVE-2021-23382
CWE-1333 Medium
No
No
8.2.12, 9.0.6, 9.1.1 04.09.2023 SB2021042651
SB2023090426
SB2023102413
and 2 more
#VU76185 - Incorrect Regular Expression
CVE-2021-3803
CWE-185 Medium
No
No
8.2.12, 9.0.6, 9.1.1 16.05.2023 SB2021091716
SB2023051651
SB2023053029
and 12 more
#VU73870 - Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2022-30634
CWE-835 Medium
No
No
8.2.12, 9.0.6, 9.1.1 21.03.2023 SB2022071516
SB2023011810
SB2023042120
and 13 more
#VU73831 - Exposure of sensitive information to an unauthorized actor
CVE-2023-27538
CWE-200 Medium
No
No
8.2.12, 9.0.6, 9.1.1 20.03.2023 SB2023032027
SB2023032028
SB2023032044
and 40 more
#VU73830 - Double Free
CVE-2023-27537
CWE-415 High
No
No
8.2.12, 9.0.6, 9.1.1 20.03.2023 SB2023032027
SB2023032044
SB2023060527
and 15 more
#VU73829 - State Issues
CVE-2023-27536
CWE-371 Medium
No
No
8.2.12, 9.0.6, 9.1.1 20.03.2023 SB2023032027
SB2023032028
SB2023032044
and 80 more
#VU73828 - State Issues
CVE-2023-27535
CWE-371 Low
No
No
8.2.12, 9.0.6, 9.1.1 20.03.2023 SB2023032027
SB2023032028
SB2023032044
and 84 more
#VU73827 - Improper input validation
CVE-2023-27534
CWE-20 Low
No
No
8.2.12, 9.0.6, 9.1.1 20.03.2023 SB2023032027
SB2023032028
SB2023032044
and 45 more
#VU70122 - Incorrect Regular Expression
CVE-2022-37599
CWE-185 Medium
No
No
8.2.12, 9.0.6, 9.1.1 12.12.2022 SB2022121221
SB2023010424
SB2023020920
and 19 more
#VU70121 - Incorrect Regular Expression
CVE-2022-37603
CWE-185 Medium
No
No
8.2.12, 9.0.6, 9.1.1 12.12.2022 SB2022121221
SB2022121222
SB2023010418
and 29 more
#VU69675 - Improper Control of Generation of Code ('Code Injection')
CVE-2022-24999
CWE-94 Medium
Available
No
8.2.12, 9.0.6, 9.1.1 29.11.2022 SB2022112910
SB2022112911
SB2022112943
and 49 more
#VU66070 - Resource exhaustion
CVE-2022-30633
CWE-400 Medium
No
No
8.2.12, 9.0.6, 9.1.1 03.08.2022 SB2022080321
SB2022080323
SB2022080324
and 72 more
#VU65835 - Incorrect Regular Expression
CVE-2022-31129
CWE-185 Medium
No
No
8.2.12, 9.0.6, 9.1.1 27.07.2022 SB2022072729
SB2022072901
SB2022081048
and 102 more
#VU63700 - Incorrect Regular Expression
CVE-2021-29060
CWE-185 Medium
No
No
8.2.12, 9.0.6, 9.1.1 26.05.2022 SB2021062147
SB2022052615
SB2022101430
and 4 more
#VU63007 - Improper input validation
CVE-2022-27780
CWE-20 Low
No
No
8.2.12, 9.0.6, 9.1.1 11.05.2022 SB2022051112
SB2022051136
SB2022051170
and 14 more
#VU63004 - Improper control of a resource through its lifetime
CVE-2022-27778
CWE-664 Low
No
No
8.2.12, 9.0.6, 9.1.1 11.05.2022 SB2022051112
SB2022051170
SB2022072054
and 9 more
#VU55315 - Incorrect Regular Expression
CVE-2021-23343
CWE-185 Medium
No
No
8.2.12, 9.0.6, 9.1.1 26.07.2021 SB2021072624
SB2021072625
SB2022060618
and 24 more
#VU52985 - Incorrect Regular Expression
CVE-2020-28469
CWE-185 Medium
No
No
8.2.12, 9.0.6, 9.1.1 10.05.2021 SB2021051002
SB2021051004
SB2021072625
and 26 more
#VU29292 - Exposure of sensitive information to an unauthorized actor
CVE-2020-8169
CWE-200 Medium
No
No
8.2.12, 9.0.6, 9.1.1 25.06.2020 SB2020062513
SB2020062514
SB2020063017
and 14 more
#VU29290 - Improper Neutralization of HTTP Headers for Scripting Syntax
CVE-2020-8177
CWE-644 Low
No
No
8.2.12, 9.0.6, 9.1.1 25.06.2020 SB2020062511
SB2020062514
SB2020063002
and 27 more


Showing elements 361 - 380 out of 472