CVE-2023-22933: Persistent Cross-Site Scripting through the ‘module’ Tag in a View in Splunk Enterprise
Published Feb 14, 2023
·Updated
In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, a View allows for Cross-Site Scripting (XSS) in an extensible mark-up language (XML) View through the ‘layoutPanel’ attribute in the ‘module’ tag’.
Affected Software
4 affected components
Splunk splunk>=8.1.0<8.1.13
Splunk splunk>=8.2.0<8.2.10
Splunk splunk>=9.0.0<9.0.4
Splunk Splunk Cloud Platform<9.0.2209
Event History
Feb 14, 2023
CVE Published
05:22 PM
Data Sourced
05:22 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2023-22933.
2
What is the severity of CVE-2023-22933?
The severity of CVE-2023-22933 is high.
3
Which versions of Splunk Enterprise are affected by CVE-2023-22933?
Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4 are affected by CVE-2023-22933.
4
How does CVE-2023-22933 affect instances with Splunk Web enabled?
CVE-2023-22933 allows for Cross-Site Scripting (XSS) in an extensible mark-up language (XML) View through the 'layoutPanel' attribute in the 'module' tag in instances with Splunk Web enabled.
5
What is the Common Weakness Enumeration (CWE) ID for CVE-2023-22933?
The CWE ID for CVE-2023-22933 is CWE-79.