CVE-2025-20297
Reflected Cross-Site Scripting (XSS) on Splunk Enterprise through dashboard PDF generation component
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
In Splunk Enterprise versions below 9.4.2, 9.3.4 and 9.2.6, and Splunk Cloud Platform versions below 9.3.2411.102, 9.3.2408.111 and 9.2.2406.118, a low-privileged user that does not hold the "admin" or "power" Splunk roles could craft a malicious payload through the pdfgen/render REST endpoint that could result in execution of unauthorized JavaScript code in the browser of a user.
En las versiones de Splunk Enterprise anteriores a 9.4.2, 9.3.4 y 9.2.6, y en las versiones de Splunk Cloud Platform anteriores a 9.3.2411.102, 9.3.2408.111 y 9.2.2406.118, un usuario con privilegios bajos que no tenga los roles de "admin" o "power" de Splunk podría manipular un payload malicioso a través del endpoint REST pdfgen/render que podría resultar en la ejecución de código JavaScript no autorizado en el navegador de un usuario.
CVSS Scores
SSVC
- Decision:Track
Timeline
- 2024-10-10 CVE Reserved
- 2025-06-02 CVE Published
- 2025-06-02 CVE Updated
- 2025-07-04 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (1)
URL | Tag | Source |
---|---|---|
https://advisory.splunk.com/advisories/SVD-2025-0601 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Splunk Search vendor "Splunk" | Splunk Enterprise Search vendor "Splunk" for product "Splunk Enterprise" | >= 9.4.0 < 9.4.2 Search vendor "Splunk" for product "Splunk Enterprise" and version " >= 9.4.0 < 9.4.2" | en |
Affected
| ||||||
Splunk Search vendor "Splunk" | Splunk Enterprise Search vendor "Splunk" for product "Splunk Enterprise" | >= 9.3.0 < 9.3.4 Search vendor "Splunk" for product "Splunk Enterprise" and version " >= 9.3.0 < 9.3.4" | en |
Affected
| ||||||
Splunk Search vendor "Splunk" | Splunk Enterprise Search vendor "Splunk" for product "Splunk Enterprise" | >= 9.2.0 < 9.2.6 Search vendor "Splunk" for product "Splunk Enterprise" and version " >= 9.2.0 < 9.2.6" | en |
Affected
| ||||||
Splunk Search vendor "Splunk" | Splunk Enterprise Search vendor "Splunk" for product "Splunk Enterprise" | >= 9.1.0 < 9.1.9 Search vendor "Splunk" for product "Splunk Enterprise" and version " >= 9.1.0 < 9.1.9" | en |
Affected
| ||||||
Splunk Search vendor "Splunk" | Splunk Cloud Platform Search vendor "Splunk" for product "Splunk Cloud Platform" | >= 9.3.2411.0 < 9.3.2411.102 Search vendor "Splunk" for product "Splunk Cloud Platform" and version " >= 9.3.2411.0 < 9.3.2411.102" | en |
Affected
| ||||||
Splunk Search vendor "Splunk" | Splunk Cloud Platform Search vendor "Splunk" for product "Splunk Cloud Platform" | >= 9.3.2408.0 < 9.3.2408.111 Search vendor "Splunk" for product "Splunk Cloud Platform" and version " >= 9.3.2408.0 < 9.3.2408.111" | en |
Affected
| ||||||
Splunk Search vendor "Splunk" | Splunk Cloud Platform Search vendor "Splunk" for product "Splunk Cloud Platform" | >= 9.2.2406.0 < 9.2.2406.118 Search vendor "Splunk" for product "Splunk Cloud Platform" and version " >= 9.2.2406.0 < 9.2.2406.118" | en |
Affected
|