CVE-2022-43562
Host Header Injection in Splunk Enterprise
Vexday Risk Score
8Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 3EPSS 0.4%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
04 Nov 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
In Splunk Enterprise versions below 8.1.12, 8.2.9, and 9.0.2, Splunk Enterprise fails to properly validate and escape the Host header, which could let a remote authenticated user conduct various attacks against the system, including cross-site scripting and cache poisoning.
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:N/A:N
Affected products
Splunk · Splunk EnterpriseWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →