Loading HuntDB...

GHSA-v72v-m6vq-49vh

GitHub Security Advisory

⚠ Unreviewed LOW Has CVE

Advisory Details

In Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, an attacker can use a specially crafted web URL in their browser to cause log file poisoning. The attack requires the attacker to have secure shell (SSH) access to the instance and use a terminal program that supports a certain feature set to execute the attack successfully.

Related CVEs

Key Information

GHSA ID
GHSA-v72v-m6vq-49vh
Published
June 1, 2023 6:30 PM
Last Modified
April 4, 2024 4:27 AM
CVSS Score
2.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 12, 2025 6:34 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.