Sploitus

CVE-2022-43567

No indexed exploits for CVE-2022-43567 yet

In Splunk Enterprise versions below 8.2.9, 8.1.12, and 9.0.2, an authenticated user can run arbitrary operating system commands remotely through the use of specially crafted requests to the mobile alerts feature in the Splunk Secure Gateway app.

Splunk
< 8.1.12, 8.2.9, 9.0.2
Splunk Splunk Cloud Platform
< 9.0.2205
Fix
Available
CVSS 3.1
8.8 HIGH
EPSS
1.2% (66th percentile)
Weakness
CWE-502
NVD status
Modified
Published
2022-11-04
CVE-2022-43567 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2022-43567 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2022-43567 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.