mirror of
https://github.com/splunk/security_content
synced 2026-06-08 17:32:49 +00:00
1.7 KiB
1.7 KiB
title, last_modified_at, toc, toc_label, tags
| title | last_modified_at | toc | toc_label | tags | |||||
|---|---|---|---|---|---|---|---|---|---|
| Splunk Vulnerabilities | 2022-03-28 | true |
|
Try in Splunk Security Cloud{: .btn .btn--success}
Description
Keeping your Splunk Enterprise deployment up to date is critical and will help you reduce the risk associated with vulnerabilities in the product.
- Product: Splunk Enterprise, Splunk Enterprise Security, Splunk Cloud
- Datamodel:
- Last Updated: 2022-03-28
- Author: Lou Stella, Splunk
- ID: 5354df00-dce2-48ac-9a64-8adb48006828
Narrative
This analytic story includes detections that focus on attacker behavior targeted at your Splunk environment directly.
Detections
| Name | Technique | Type |
|---|---|---|
| Splunk DoS via Malformed S2S Request | Network Denial of Service | TTP |
| Open Redirect in Splunk Web | None | TTP |
| Splunk Enterprise Information Disclosure | None | TTP |
Reference
- https://www.splunk.com/en_us/product-security/announcements/svd-2022-0301.html
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3422
source | version: 1