Known vulnerabilities in Splunk Universal Forwarder - page 5
Vendor:
Splunk Inc.
Software:
Splunk Universal Forwarder
Software CPE:
cpe:2.3:a:splunk:splunk_universal_forwarder:*:*:*:*:*:*:*:*
Website:
https://www.splunk.com/
Total vulnerabilities:
97
Public exploits:
7
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
9.4.14
10.0.9
10.2.6
10.4.2
9.4.13
9.4.12
10.0.8
10.0.7
10.2.5
10.2.4
10.4.1
10.4.0
10.2.2
10.0.5
9.3.12
9.4.11
10.0.6
10.2.3
9.3.11
9.4.10
9.3.10
9.4.9
10.0.4
10.2.1
10.2.0
9.4.7
9.2.11
9.2.12
9.3.9
9.4.8
10.0.3
10.0.2
9.4.6
9.3.8
9.2.10
9.4.4
9.3.6
9.2.8
9.2.9
9.3.7
9.4.5
10.0.0
10.0.1
9.1.10
9.2.7
9.3.5
9.4.3
1.0.2
9.4.2
9.3.4
9.2.6
9.1.9
1.0.1
9.4.1
9.3.3
9.2.5
9.1.8
1.0.0
9.4.0
9.3.2
9.2.4
9.1.7
9.3.1
9.2.3
9.1.6
9.3.0
9.2.2
9.1.5
9.0.10
9.2.1
9.1.4
9.0.9
9.2.0
9.1.3
9.0.8
9.1.2
9.0.7
9.1.1
9.0.6
8.2.12
9.1.0
9.0.5
9.0.4
9.0.3
9.0.2
9.0.0
8.2.11
8.2.10
8.2.9
8.2.8
8.2.7
8.2.6
8.2.5
8.2.4
8.2.3.1
8.2.3
8.2.2
8.2.1
8.2.0
8.1.14
8.1.13
8.1.12
8.1.10
8.1.9
8.1.8
8.1.7
8.1.6
8.1.5
8.1.4
8.1.3
8.1.2
8.1.1
8.1.0
8.0.10
8.0.9
8.0.8
8.0.7
8.0.6
8.0.5
8.0.4
8.0.3
8.0.2
8.0.1
8.0.0
7.3.9
7.3.8
7.3.7
7.3.6
7.3.5
7.3.4
7.3.3
7.3.2
7.3.1
7.3.0
7.2.10
7.2.9
7.2.8
7.2.7
7.2.6
7.2.5
7.2.4
7.2.3
7.2.2
7.2.1
7.2.0
7.1.10
7.1.9
7.1.8
7.1.7
7.1.6
7.1.5
7.1.4
7.1.3
7.1.2
7.1.1
7.1.0
7.0.13
7.0.11
7.0.10
7.0.9
7.0.8
7.0.7
7.0.6
7.0.5
7.0.4
7.0.3
7.0.2
7.0.1
7.0.0
8.1.11
8.2.7.1
9.0.1
6.1.3
6.1.2
6.1.1
6.1.0
Vulnerabilities (97)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU70456 - Use After Free CVE-2022-43552 |
CWE-416 | Low | 8.1.14, 8.2.11, 9.0.5 | 21.12.2022 |
SB2022122102 SB2022122620 SB2022122621 and 66 more |
||
| #VU68829 - Resource Management Errors CVE-2022-40304 |
CWE-399 | Medium | 8.1.14, 8.2.11, 9.0.5 | 30.10.2022 |
SB2022103005 SB2022103006 SB2022103007 and 90 more |
||
| #VU68828 - Integer overflow CVE-2022-40303 |
CWE-190 | High | 8.1.14, 8.2.11, 9.0.5 | 30.10.2022 |
SB2022103005 SB2022103006 SB2022103007 and 88 more |
||
| #VU67414 - Improper Validation of Array Index CVE-2022-35737 |
CWE-129 | Medium | 8.1.14, 8.2.11, 9.0.5 | 15.09.2022 |
SB2022091537 SB2022092034 SB2022092682 and 72 more |
||
| #VU66153 - Heap-based Buffer Overflow CVE-2022-37434 |
CWE-122 | High | 8.1.14, 8.2.11, 9.0.5 | 07.08.2022 |
SB2022080705 SB2022081833 SB2022081851 and 154 more |
||
| #VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2022-2068 |
CWE-78 | Medium | 8.1.11, 8.2.7.1, 9.0.1 | 21.06.2022 |
SB2022062120 SB2022062125 SB2022062236 and 135 more |
||
| #VU63004 - Improper control of a resource through its lifetime CVE-2022-27778 |
CWE-664 | Low | 8.1.14, 8.2.11, 9.0.5 | 11.05.2022 |
SB2022051112 SB2022051170 SB2022072054 and 9 more |
||
| #VU62741 - Integer overflow CVE-2022-29824 |
CWE-190 | High | 8.1.11, 8.2.7.1, 9.0.1 | 03.05.2022 |
SB2022050305 SB2022050306 SB2022050307 and 73 more |
||
| #VU62643 - Resource Management Errors CVE-2022-27775 |
CWE-399 | Low | 8.1.14, 8.2.11, 9.0.5 | 27.04.2022 |
SB2022042706 SB2022042803 SB2022042904 and 30 more |
||
| #VU61671 - Memory corruption CVE-2018-25032 |
CWE-119 | Medium | 8.1.14, 8.2.11, 9.0.5 | 28.03.2022 |
SB2022032844 SB2022032845 SB2022033018 and 192 more |
||
| #VU61394 - UNIX Symbolic Link (Symlink) Following CVE-2021-31566 |
CWE-61 | Low | 8.1.14, 8.2.11, 9.0.5 | 15.03.2022 |
SB2022031530 SB2022031601 SB2022032445 and 27 more |
||
| #VU60922 - Use After Free CVE-2022-23308 |
CWE-416 | High | 8.1.11, 8.2.7.1, 9.0.1 | 01.03.2022 |
SB2022030109 SB2022030110 SB2022031503 and 59 more |
||
| #VU59459 - Use After Free CVE-2021-36976 |
CWE-416 | Medium | 8.1.14, 8.2.11, 9.0.5 | 11.01.2022 |
SB2021072064 SB2022011140 SB2022031433 and 13 more |
||
| #VU53439 - Integer overflow CVE-2021-3520 |
CWE-190 | High | 8.1.14, 8.2.11, 9.0.5 | 24.05.2021 |
SB2021052411 SB2021052522 SB2021052537 and 33 more |
||
| #VU53289 - Improper input validation CVE-2021-3541 |
CWE-20 | Medium | 8.1.11, 8.2.7.1, 9.0.1 | 16.05.2021 |
SB2021051601 SB2021051602 SB2021061811 and 32 more |
||
| #VU29292 - Exposure of sensitive information to an unauthorized actor CVE-2020-8169 |
CWE-200 | Medium | 8.1.14, 8.2.11, 9.0.5 | 25.06.2020 |
SB2020062513 SB2020062514 SB2020063017 and 14 more |
||
| #VU9119 - Permissions, Privileges, and Access Controls |
CWE-264 | Low | - | 03.11.2017 |
SB2017102711 |
Showing elements 81 - 100 out of 97