---
cve: "CVE-2017-12572"
severity: "LOW"
cvss: 3.1
epss: "50%"
vendor: "n/a"
kev: false
exploited: false
published: "2017-08-05 21:29:00"
tags: [cve, security, low]
source: tsecurity.de CVE-Dossier
exported: "2026-09-10T04:10:53+02:00"
---

# CVE-2017-12572

> 3.1 LOW

## Beschreibung

Persistent Cross Site Scripting (XSS) exists in Splunk Enterprise 6.5.x before 6.5.2, 6.4.x before 6.4.6, and 6.3.x before 6.3.9 and Splunk Light before 6.5.2, with exploitation requiring administrative access, aka SPL-134104.

## Referenzen

- <https://www.splunk.com/view/SP-CAAAPYC>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2017-12572) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
