CVE Vulnerabilities

CVE-2010-2504

Published: Jun 28, 2010 | Modified: Jun 29, 2010
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6 MEDIUM
AV:N/AC:M/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Splunk 4.0 through 4.0.10 and 4.1 through 4.1.1 allows remote authenticated users to obtain sensitive information via HTTP header injection, aka SPL-31066.

Affected Software

Name Vendor Start Version End Version
Splunk Splunk 4.0.4 4.0.4
Splunk Splunk 4.0.6 4.0.6
Splunk Splunk 4.0 4.0
Splunk Splunk 4.0.3 4.0.3
Splunk Splunk 4.0.8 4.0.8
Splunk Splunk 4.0.5 4.0.5
Splunk Splunk 4.0.9 4.0.9
Splunk Splunk 4.0.10 4.0.10
Splunk Splunk 4.0.1 4.0.1
Splunk Splunk 4.0.7 4.0.7
Splunk Splunk 4.0.2 4.0.2

References