Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-43564


In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, a remote user who can create search macros and schedule search reports can cause a denial of service through the use of specially crafted search macros.


Published

2022-11-04T23:15:09.960

Last Modified

2024-11-21T07:26:47.640

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.9 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-400
  • Type: Primary
    CWE-400

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application splunk splunk < 8.1.12 Yes
Application splunk splunk < 8.2.9 Yes
Application splunk splunk_cloud_platform < 9.0.2205 Yes

References