Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-22938


In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, the ‘sendemail’ REST API endpoint lets any authenticated user send an email as the Splunk instance. The endpoint is now restricted to the ‘splunk-system-user’ account on the local instance.


Published

2023-02-14T18:15:12.617

Last Modified

2024-11-21T07:45:40.823

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.3 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-285
  • Type: Primary
    NVD-CWE-noinfo

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application splunk splunk < 8.1.13 Yes
Application splunk splunk < 8.2.10 Yes
Application splunk splunk < 9.0.4 Yes
Application splunk splunk_cloud_platform < 9.0.2209.3 Yes

References