CVE-2022-43567
HIGHSplunk Enterprise <8.2.9-9.0.2 - Command Injection
Title source: llmDescription
In Splunk Enterprise versions below 8.2.9, 8.1.12, and 9.0.2, an authenticated user can run arbitrary operating system commands remotely through the use of specially crafted requests to the mobile alerts feature in the Splunk Secure Gateway app.
Scores
CVSS v3
8.8
EPSS
0.0106
EPSS Percentile
77.4%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Classification
CWE
CWE-502
Status
published
Affected Products (2)
splunk/splunk
< 8.1.12
splunk/splunk_cloud_platform
< 9.0.2205
Timeline
Published
Nov 04, 2022
Tracked Since
Feb 18, 2026