CVE-2022-43567
In Splunk Enterprise versions below 8.2.9, 8.1.12, and 9.0.2, an authenticated user can run arbitrary operating system commands remotely through the use of specially crafted requests to the mobile alerts feature in the Splunk Secure Gateway app.
- Affected products
- Splunk Enterprise, Splunk Secure Gateway App
- Splunk
- < 8.1.12, 8.2.9, 9.0.2
- Splunk Splunk Cloud Platform
- < 9.0.2205
- Fix
- Available
- CVSS 3.1
- 8.8 HIGH
- EPSS
- 1.2% (66th percentile)
- Weakness
- CWE-502
- NVD status
- Modified
- Published
- 2022-11-04
CVE-2022-43567 at NVD
No indexed exploits for CVE-2022-43567 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2022-43567 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.