Known vulnerabilities in Splunk Universal Forwarder - page 5

Software CPE: cpe:2.3:a:splunk:splunk_universal_forwarder:*:*:*:*:*:*:*:*
Total vulnerabilities: 97
Public exploits: 7
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Splunk Universal Forwarder Splunk Universal Forwarder is affected by 97 known vulnerabilities: 1 critical, 9 high, 58 medium, 29 low Critical High Medium Low

Vulnerabilities (97)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU70456 - Use After Free
CVE-2022-43552
CWE-416 Low
No
No
8.1.14, 8.2.11, 9.0.5 21.12.2022 SB2022122102
SB2022122620
SB2022122621
and 66 more
#VU68829 - Resource Management Errors
CVE-2022-40304
CWE-399 Medium
No
No
8.1.14, 8.2.11, 9.0.5 30.10.2022 SB2022103005
SB2022103006
SB2022103007
and 90 more
#VU68828 - Integer overflow
CVE-2022-40303
CWE-190 High
No
No
8.1.14, 8.2.11, 9.0.5 30.10.2022 SB2022103005
SB2022103006
SB2022103007
and 88 more
#VU67414 - Improper Validation of Array Index
CVE-2022-35737
CWE-129 Medium
Available
No
8.1.14, 8.2.11, 9.0.5 15.09.2022 SB2022091537
SB2022092034
SB2022092682
and 72 more
#VU66153 - Heap-based Buffer Overflow
CVE-2022-37434
CWE-122 High
Available
No
8.1.14, 8.2.11, 9.0.5 07.08.2022 SB2022080705
SB2022081833
SB2022081851
and 154 more
#VU64559 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2022-2068
CWE-78 Medium
No
No
8.1.11, 8.2.7.1, 9.0.1 21.06.2022 SB2022062120
SB2022062125
SB2022062236
and 135 more
#VU63004 - Improper control of a resource through its lifetime
CVE-2022-27778
CWE-664 Low
No
No
8.1.14, 8.2.11, 9.0.5 11.05.2022 SB2022051112
SB2022051170
SB2022072054
and 9 more
#VU62741 - Integer overflow
CVE-2022-29824
CWE-190 High
No
No
8.1.11, 8.2.7.1, 9.0.1 03.05.2022 SB2022050305
SB2022050306
SB2022050307
and 73 more
#VU62643 - Resource Management Errors
CVE-2022-27775
CWE-399 Low
No
No
8.1.14, 8.2.11, 9.0.5 27.04.2022 SB2022042706
SB2022042803
SB2022042904
and 30 more
#VU61671 - Memory corruption
CVE-2018-25032
CWE-119 Medium
No
No
8.1.14, 8.2.11, 9.0.5 28.03.2022 SB2022032844
SB2022032845
SB2022033018
and 192 more
#VU61394 - UNIX Symbolic Link (Symlink) Following
CVE-2021-31566
CWE-61 Low
No
No
8.1.14, 8.2.11, 9.0.5 15.03.2022 SB2022031530
SB2022031601
SB2022032445
and 27 more
#VU60922 - Use After Free
CVE-2022-23308
CWE-416 High
No
No
8.1.11, 8.2.7.1, 9.0.1 01.03.2022 SB2022030109
SB2022030110
SB2022031503
and 59 more
#VU59459 - Use After Free
CVE-2021-36976
CWE-416 Medium
No
No
8.1.14, 8.2.11, 9.0.5 11.01.2022 SB2021072064
SB2022011140
SB2022031433
and 13 more
#VU53439 - Integer overflow
CVE-2021-3520
CWE-190 High
No
No
8.1.14, 8.2.11, 9.0.5 24.05.2021 SB2021052411
SB2021052522
SB2021052537
and 33 more
#VU53289 - Improper input validation
CVE-2021-3541
CWE-20 Medium
No
No
8.1.11, 8.2.7.1, 9.0.1 16.05.2021 SB2021051601
SB2021051602
SB2021061811
and 32 more
#VU29292 - Exposure of sensitive information to an unauthorized actor
CVE-2020-8169
CWE-200 Medium
No
No
8.1.14, 8.2.11, 9.0.5 25.06.2020 SB2020062513
SB2020062514
SB2020063017
and 14 more
#VU9119 - Permissions, Privileges, and Access Controls
CWE-264 Low
No
No
- 03.11.2017 SB2017102711


Showing elements 81 - 100 out of 97