6.1

CVE-2025-20378

Open Redirect on Web Login endpoint in Splunk Enterprise

In Splunk Enterprise versions below 10.0.1, 9.4.5, 9.3.7, 9.2.9, and Splunk Cloud Platform versions below 10.0.2503.5, 9.3.2411.111, and 9.3.2408.121, an unauthenticated attacker could craft a malicious URL using the `return_to` parameter of the Splunk Web login endpoint. When an authenticated user visits the malicious URL, it could cause an unvalidated redirect to an external malicious site. To be successful, the attacker has to trick the victim into initiating a request from their browser. The unauthenticated attacker should not be able to exploit the vulnerability at will.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Splunk ≫ Splunk SwEdition enterprise Version >= 9.2.0 < 9.2.9
Splunk ≫ Splunk SwEdition enterprise Version >= 9.3.0 < 9.3.7
Splunk ≫ Splunk SwEdition enterprise Version >= 9.4.0 < 9.4.5
Splunk ≫ Splunk Version 10.0.0 SwEdition enterprise
Splunk ≫ Splunk Cloud Platform Version >= 9.3.2408 < 9.3.2408.121
Splunk ≫ Splunk Cloud Platform Version >= 9.3.2411 < 9.3.2411.111
Splunk ≫ Splunk Cloud Platform Version >= 10.0.2503 < 10.0.2503.5
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.24% 0.145
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.1 2.8 2.7
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Cisco PSIRT 3.1 1.6 1.4
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:N/A:N
CWE-601 URL Redirection to Untrusted Site ('Open Redirect')

The web application accepts a user-controlled input that specifies a link to an external site, and uses that link in a redirect.

https://advisory.splunk.com/advisories/SVD-2025-1101
Vendor Advisory