Total vulnerabilities in the database
The XML parser in Splunk 4.0.0 through 4.1.4 allows remote authenticated users to obtain sensitive information and gain privileges via an XML External Entity (XXE) attack to unknown vectors.
Software | From | Fixed in |
---|---|---|
splunk / splunk | 4.0 | 4.1.4.x |