CVE-2026-76323
- EPSS 0.24%
- Veröffentlicht 19.08.2026 21:34:28
- Zuletzt bearbeitet 27.08.2026 17:20:12
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the "admin" or "power" Splunk roles could bypass Search Processing Language (SPL) safeguards for risky commands through the Job Details dashboard. The in...
CVE-2026-76321
- EPSS 0.34%
- Veröffentlicht 19.08.2026 21:34:27
- Zuletzt bearbeitet 27.08.2026 17:20:11
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user could inject arbitrary Search Processing Language (SPL) into requests that search for events near a selected event. This could allow for unauthorized sear...
- EPSS 0.27%
- Veröffentlicht 19.08.2026 21:34:27
- Zuletzt bearbeitet 27.08.2026 17:20:11
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who holds the "user" Splunk role could craft a Dashboard Studio dashboard that runs attacker-controlled Search Processing Language (SPL) for another authenticated user. Th...
CVE-2026-76319
- EPSS 0.38%
- Veröffentlicht 19.08.2026 21:34:26
- Zuletzt bearbeitet 27.08.2026 17:20:10
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a low-privileged user that does not hold the fsh_manage capability could perform Remote Code Execution through Federated Search bundle selection. This could allow for access to a...
CVE-2026-76320
- EPSS 0.21%
- Veröffentlicht 19.08.2026 21:34:26
- Zuletzt bearbeitet 26.08.2026 16:16:39
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, an unauthenticated user could cause an authenticated user to run arbitrary Search Processing Language (SPL) searches on their behalf through the Event Type Builder. This could ex...
CVE-2026-76318
- EPSS 0.25%
- Veröffentlicht 19.08.2026 21:34:25
- Zuletzt bearbeitet 26.08.2026 16:16:39
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user that holds a role with the schedule_search capability could store a malicious script in an alert trigger condition field. When another user opens the crafted link, the scr...
CVE-2026-76316
- EPSS 0.3%
- Veröffentlicht 19.08.2026 21:34:24
- Zuletzt bearbeitet 27.08.2026 17:20:09
In Splunk Enterprise versions below 10.4.1, 10.2.5, 10.0.9, and 9.4.14, an unauthenticated user who can reach the Splunk management port could store a Search Processing Language (SPL) pipeline that runs when an administrator opens the Add Data forwar...
CVE-2026-76317
- EPSS 0.37%
- Veröffentlicht 19.08.2026 21:34:24
- Zuletzt bearbeitet 27.08.2026 17:20:10
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the "admin" or "power" Splunk roles could move files that the user account running Splunk Enterprise can read into a lookup that the user controls. The u...
CVE-2026-76314
- EPSS 0.65%
- Veröffentlicht 19.08.2026 21:34:23
- Zuletzt bearbeitet 27.08.2026 17:20:08
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the "admin" or "power" Splunk roles could perform Remote Code Execution (RCE) by submitting crafted Splunk Web Manager Configuration content. The user co...
CVE-2026-76315
- EPSS 0.43%
- Veröffentlicht 19.08.2026 21:34:23
- Zuletzt bearbeitet 27.08.2026 17:20:09
In Splunk Enterprise versions below 10.4.2, 10.2.6, 10.0.9, and 9.4.14, a user who does not hold the "admin" or "power" Splunk roles could execute arbitrary code on the Splunk platform instance through Splunk Web Manager Configuration. The user could...