Skip to content
VulniPulse

Complete feed

No mitigation yet

No fix, workaround or mitigation extracted yet

Home overview

Android app · Google Play

Take your CVE monitoring with you.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 32 official vendor sources and 160+ reviewed platform categories.

High7.0Splunk

High [CVE-2023-40596] In Splunk Enterprise versions earlier than 8.2.12, 9.0.6, and 9.1.1, a dynamic link library (DLL) that ships with Splunk…

In Splunk Enterprise versions earlier than 8.2.12, 9.0.6, and 9.1.1, a dynamic link library (DLL) that ships with Splunk Enterprise references an insecure path for the OPENSSLDIR build definition. An attacker can abuse this reference and subsequently install malicious code to achieve privilege escalation on the Windows machine.

CVE-2023-40596
Splunk Enterprise
Aug 30, 2023
High8.8Splunk

High [CVE-2023-40595] In Splunk Enterprise versions lower than 8.2.12, 9.0.6, and 9.1.1, an attacker can execute a specially crafted query that they

In Splunk Enterprise versions lower than 8.2.12, 9.0.6, and 9.1.1, an attacker can execute a specially crafted query that they can then use to serialize untrusted data. The attacker can use the query to execute arbitrary code.

CVE-2023-40595
Splunk Enterprise
Aug 30, 2023
High8.4Splunk

High [CVE-2023-40592] In Splunk Enterprise versions below 9.1.1, 9.0.6, and 8.2.12, an attacker can craft a special web request that can

In Splunk Enterprise versions below 9.1.1, 9.0.6, and 8.2.12, an attacker can craft a special web request that can result in reflected cross-site scripting (XSS) on the “/app/search/table” web endpoint. Exploitation of this vulnerability can lead to the execution of arbitrary commands on the Splunk platform instance.

CVE-2023-40592
Splunk Enterprise
Aug 30, 2023
High7.1QNAP

High [CVE-2023-34971] QTS: inadequate encryption strength vulnerability has been reported to affect QNAP operating systems.

An inadequate encryption strength vulnerability has been reported to affect QNAP operating systems. If exploited, the vulnerability possibly allows local network clients to decrypt the data using brute force attacks via unspecified vectors. We have already fixed the vulnerability in the following versions: QTS 5.0.1.2425 build 20230609 and later QTS 5.1.0.2444 build 20230629 and later QTS 4.5.4.2467 build 20230718 and later QuTS hero h5.1.0.2424 build 20230609 and later QuTS hero h4.5.4.2476 build 20230728 and later

CVE-2023-34971
QTSQuTS hero
Aug 24, 2023
High7.8F5

High [CVE-2023-38418] The BIG-IP Edge Client Installer on macOS does not follow best practices for elevating privileges during the installation process

The BIG-IP Edge Client Installer on macOS does not follow best practices for elevating privileges during the installation process. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVE-2023-38418
BIG-IP
Aug 2, 2023
High7.5F5

High [CVE-2023-38138] reflected cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IP Configuration utility which

A reflected cross-site scripting (XSS) vulnerability exists in an undisclosed page of the BIG-IP Configuration utility which allows an attacker to run JavaScript in the context of the currently logged-in user. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVE-2023-38138
BIG-IP
Aug 2, 2023
High7.1F5

High [CVE-2023-36858] insufficient verification of data vulnerability exists in BIG-IP Edge Client for Windows and macOS that may

An insufficient verification of data vulnerability exists in BIG-IP Edge Client for Windows and macOS that may allow an attacker to modify its configured server list. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVE-2023-36858
BIG-IP
Aug 2, 2023
High8.6Splunk

High [CVE-2023-3997] Splunk SOAR versions lower than 6.1.0 are indirectly affected by a potential vulnerability accessed through the user’s terminal

Splunk SOAR versions lower than 6.1.0 are indirectly affected by a potential vulnerability accessed through the user’s terminal. A third party can send Splunk SOAR a maliciously crafted web request containing special ANSI characters to cause log file poisoning. When a terminal user attempts to view the poisoned logs, this can tamper with the terminal and cause possible malicious code execution from the terminal user’s action.

CVE-2023-3997
ES / ITSI / SOAR
Jul 31, 2023
High7.2Check Point

High [CVE-2023-28130] Gaia: Local user may lead to privilege escalation using Gaia Portal hostnames page.

Local user may lead to privilege escalation using Gaia Portal hostnames page.

CVE-2023-28130
Quantum Gateway / Gaia
Jul 26, 2023
High7.8Check Point

High [CVE-2023-28133] Local privilege escalation in Check Point Endpoint Security Client (version E87.30) via crafted OpenSSL configuration file

Local privilege escalation in Check Point Endpoint Security Client (version E87.30) via crafted OpenSSL configuration file

CVE-2023-28133
Unclassified
Jul 23, 2023
High8.1Splunk

High [CVE-2023-32714] In the Splunk App for Lookup File Editing versions below 4.0.1, a low-privileged user

In the Splunk App for Lookup File Editing versions below 4.0.1, a low-privileged user can, with a specially crafted web request, trigger a path traversal exploit that can then be used to read and write to restricted areas of the Splunk installation directory.

CVE-2023-32714
Unclassified
Jun 1, 2023
High7.8Splunk

High [CVE-2023-32713] Splunk Enterprise: In Splunk App for Stream versions below 8.1.1, a low-privileged user

In Splunk App for Stream versions below 8.1.1, a low-privileged user could use a vulnerability in the streamfwd process within the Splunk App for Stream to escalate their privileges on the machine that runs the Splunk Enterprise instance, up to and including the root user.

CVE-2023-32713
Splunk Enterprise
Jun 1, 2023
High8.6Splunk

High [CVE-2023-32712] In Splunk Enterprise versions below 9.1.0.2, 9.0.5.1, and 8.2.11.2, an attacker

In Splunk Enterprise versions below 9.1.0.2, 9.0.5.1, and 8.2.11.2, an attacker can inject American National Standards Institute (ANSI) escape codes into Splunk log files that, when a vulnerable terminal application reads them, can potentially, at worst, result in possible code execution in the vulnerable application. This attack requires a user to use a terminal application that supports the translation of ANSI escape codes to read the malicious log file locally in the vulnerable terminal, and to perform additional user interaction to exploit. Universal Forwarder versions 9.1.0.1, 9.0.5, 8.2.11, and lower can be vulnerable in situations where they have management services active and accessible over the network. Universal Forwarder versions 9.0.x and 9.1.x bind management services to the local machine and are not vulnerable in this specific configuration. See SVD-2022-0605 for more information. Universal Forwarder versions 9.1 use Unix Domain Sockets (UDS) for communication, which further reduces the potential attack surface. The vulnerability does not directly affect Splunk Enterprise or Universal Forwarder. The indirect impact on Splunk Enterprise and Universal Forwarder can vary significantly depending on the permissions in the vulnerable terminal application and where and how the user reads the malicious log file.

CVE-2023-32712
Splunk EnterpriseUniversal Forwarder
Jun 1, 2023
High7.2Splunk

High [CVE-2023-32708] In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, and Splunk Cloud Platform versions below 9.0.2303.100, a…

In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, and Splunk Cloud Platform versions below 9.0.2303.100, a low-privileged user can trigger an HTTP response splitting vulnerability with the ‘rest’ SPL command that lets them potentially access other REST endpoints in the system arbitrarily.

CVE-2023-32708
Splunk EnterpriseSplunk Cloud Platform
Jun 1, 2023
High8.8Splunk

High [CVE-2023-32707] In versions of Splunk Enterprise below 9.0.5, 8.2.11, and 8.1.14, and Splunk Cloud Platform below version 9.0.2303.100, a…

In versions of Splunk Enterprise below 9.0.5, 8.2.11, and 8.1.14, and Splunk Cloud Platform below version 9.0.2303.100, a low-privileged user who holds a role that has the ‘edit_user’ capability assigned to it can escalate their privileges to that of the admin user by providing specially crafted web requests.

CVE-2023-32707
Splunk EnterpriseSplunk Cloud Platform
Jun 1, 2023
High7.7Splunk

High [CVE-2023-32706] On Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, an unauthenticated attacker

On Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, an unauthenticated attacker can send specially-crafted messages to the XML parser within SAML authentication to cause a denial of service in the Splunk daemon.

CVE-2023-32706
Splunk Enterprise
Jun 1, 2023
High7.5F5

High [CVE-2023-29163] When UDP profile with idle timeout set to immediate or the value 0 is configured on a virtual server, undisclosed traffic

When UDP profile with idle timeout set to immediate or the value 0 is configured on a virtual server, undisclosed traffic can cause TMM to terminate. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVE-2023-29163
Unclassified
May 3, 2023
High7.2F5

High [CVE-2023-28742] When DNS is provisioned, an authenticated remote command execution vulnerability exists in DNS iQuery mesh.

When DNS is provisioned, an authenticated remote command execution vulnerability exists in DNS iQuery mesh. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVE-2023-28742
Unclassified
May 3, 2023
High7.1F5

High [CVE-2023-28724] NGINX Management Suite default file permissions are set such that an authenticated attacker

NGINX Management Suite default file permissions are set such that an authenticated attacker may be able to modify sensitive files on NGINX Instance Manager and NGINX API Connectivity Manager. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVE-2023-28724
NGINX
May 3, 2023
High8.1F5

High [CVE-2023-28656] NGINX Management Suite may

NGINX Management Suite may allow an authenticated attacker to gain access to configuration objects outside of their assigned environment. Note: Software versions which have reached End of Technical Support (EoTS) are not evaluated.

CVE-2023-28656
NGINX
May 3, 2023