Description
Splunk Enterprise deployment servers in versions before 8.1.10.1, 8.2.6.1, and 9.0 let clients deploy forwarder bundles to other deployment clients through the deployment server. An attacker that compromised a Universal Forwarder endpoint could use the vulnerability to execute arbitrary code on all other Universal Forwarder endpoints subscribed to the deployment server.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-53395 | Splunk Enterprise deployment servers in versions before 9.0 let clients deploy forwarder bundles to other deployment clients through the deployment server. An attacker that compromised a Universal Forwarder endpoint could use the vulnerability to execute arbitrary code on all other Universal Forwarder endpoints subscribed to the deployment server. |
References
History
No history.
Status: PUBLISHED
Assigner: Splunk
Published:
Updated: 2024-09-17T02:20:54.385Z
Reserved: 2022-05-31T00:00:00.000Z
Link: CVE-2022-32158
No data.
Status : Modified
Published: 2022-06-15T17:15:09.267
Modified: 2024-11-21T07:05:51.657
Link: CVE-2022-32158
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD