Description
Improper Access Control. Splunk addressed multiple internally identified vulnerabilities in Splunk Enterprise versions 10.4.3, 10.2.7, 10.0.10, and 9.4.15. The vulnerabilities are grouped by Common Weakness Enumeration (CWE), with one Common Vulnerabilities and Exposures (CVE) identifier assigned to each group. See Details for more information.
Published:
2026-10-07
Score:
n/a
EPSS:
n/a
KEV:
No
Impact:
n/a
Action:
n/a
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
Upgrade Splunk Enterprise to versions 10.4.3, 10.2.7, 10.0.10, and 9.4.15, or higher.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
| Link | Providers |
|---|---|
| https://advisory.splunk.com/advisories/SVD-2026-1002 |
|
History
Wed, 07 Oct 2026 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Splunk
Splunk splunk Enterprise |
|
| Vendors & Products |
Splunk
Splunk splunk Enterprise |
Wed, 07 Oct 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Access Control. Splunk addressed multiple internally identified vulnerabilities in Splunk Enterprise versions 10.4.3, 10.2.7, 10.0.10, and 9.4.15. The vulnerabilities are grouped by Common Weakness Enumeration (CWE), with one Common Vulnerabilities and Exposures (CVE) identifier assigned to each group. See Details for more information. | |
| Title | Improper Access Control in Splunk Enterprise | |
| Weaknesses | CWE-284 | |
| References |
|
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2026-10-07T20:46:37.805Z
Reserved: 2026-08-19T12:02:03.621Z
Link: CVE-2026-76281
No data.
Status : Received
Published: 2026-10-07T21:17:19.483
Modified: 2026-10-07T21:17:19.483
Link: CVE-2026-76281
No data.
OpenCVE Enrichment
Updated: 2026-10-07T23:30:07Z
Weaknesses
-
CWE-284
Improper Access Control