The XML parser in Splunk 4.0.0 through 4.1.4 allows remote authenticated users to obtain sensitive information and gain privileges via an XML External Entity (XXE) attack to unknown vectors.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
Link | Providers |
---|---|
http://www.splunk.com/view/SP-CAAAFQ6 |
![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T16:44:07.698Z
Reserved: 2010-09-13T00:00:00Z
Link: CVE-2010-3322

No data.

Status : Deferred
Published: 2010-09-14T17:00:02.400
Modified: 2025-04-11T00:51:21.963
Link: CVE-2010-3322

No data.

No data.