VYPR
High severity8.8NVD Advisory· Published Sep 14, 2010· Updated Apr 29, 2026

CVE-2010-3322

CVE-2010-3322

Description

The XML parser in Splunk 4.0.0 through 4.1.4 allows remote authenticated users to obtain sensitive information and gain privileges via an XML External Entity (XXE) attack to unknown vectors.

Affected products

1
  • cpe:2.3:a:splunk:splunk:*:*:*:*:*:*:*:*
    Range: >=4.0,<=4.1.4

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.