Medium severity6.1NVD Advisory· Published May 12, 2017· Updated May 13, 2026
CVE-2016-4857
CVE-2016-4857
Description
Open redirect vulnerability in Splunk Enterprise 6.4.x prior to 6.4.2, Splunk Enterprise 6.3.x prior to 6.3.6, Splunk Enterprise 6.2.x prior to 6.2.11 and Splunk Light prior to 6.4.2 allows to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
Affected products
2- Splunk Inc./Splunk Enterprisev5Range: 6.4.x prior to 6.4.2
- Splunk Inc./Splunk Lightv5Range: prior to 6.4.2
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- jvn.jp/en/jp/JVN39926655/index.htmlnvdThird Party AdvisoryVDB Entry
- www.splunk.com/view/SP-CAAAPQMnvdVendor Advisory
News mentions
0No linked articles in our index yet.