First published: Tue Feb 14 2023(Updated: )
In Splunk Enterprise 9.0 versions before 9.0.4, a View allows for Cross-Site Scripting (XSS) through the error message in a Base64-encoded image. The vulnerability affects instances with Splunk Web enabled. It does not affect Splunk Enterprise versions below 9.0.
Credit: prodsec@splunk.com prodsec@splunk.com
Affected Software | Affected Version | How to fix |
---|---|---|
>=9.0.0<9.0.4 | ||
<9.0.2209.3 | ||
Splunk Splunk | >=9.0.0<9.0.4 | |
Splunk Splunk Cloud Platform | <9.0.2209.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-22932 is a vulnerability in Splunk Enterprise 9.0 versions before 9.0.4 that allows for Cross-Site Scripting (XSS) through the error message in a Base64-encoded image.
Splunk Enterprise versions before 9.0.4 and Splunk Cloud Platform version up to 9.0.2209.3 are affected by CVE-2023-22932.
CVE-2023-22932 has a severity rating of 6.1 (high).
CVE-2023-22932 affects instances with Splunk Web enabled.
To fix CVE-2023-22932, upgrade to Splunk Enterprise version 9.0.4 or later.