選單換圖效果,請啟用Active Scripting功能
南臺首頁 English
:::
訪客 未來學生 本校學生 教職同仁 畢業校友
:::
  南臺頭條新聞
  南臺影音新聞
  所有訊息
  重要公告
  行政公告
  校園活動
  專案計劃
  研討會資訊
  校內徵才
  校園職場實習
  工作機會
  國際證照
  南臺新生
  招生資訊
  南臺RSS新聞
  本月公告一覽
  停刊公告活動欄
  [公告系統登入]


【行政公告】 ::: [ 上一頁 ]
 
公 告 單位
圖資處數位服務組
訊 息 類 別 行政公告 行政公告 公 告 對 象 全體
公 告 主 題
【資安漏洞預警】Splunk Enterprise、Splunk Cloud Platform及Splunk Secure Gateway存在高風險安全漏洞(CVE-2026-20251),請儘速確認
【Security Vulnerability Alert】Splunk Enterprise、Splunk Cloud Platform and Splunk Secure Gateway have a high-risk security vulnerability (CVE-2026-20251), please confirm as soon as possible
公 告 內 容
轉發 國家資安資訊分享與分析中心 資安訊息警訊 NISAC-200-202607-00000001

[內容說明]
研究人員發現Splunk Enterprise、Splunk Cloud Platform及Splunk Secure Gateway存在不安全之反序列化(Insecure Deserialization)漏洞(CVE-2026-20251),已通過身分鑑別之遠端攻擊者可透過對未受信任之資料進行反序列化,進而於受影響伺服器上執行任意程式碼,請儘速確認並進行修補。

[影響平台]
Splunk Enterprise 10.2.0至10.2.3版本
Splunk Enterprise 10.0.0至10.0.6版本
Splunk Enterprise 9.4.0至9.4.11版本
Splunk Enterprise 9.3.0至9.3.12版本
Splunk Cloud Platform 10.3.2512.12(不含)以前版本
Splunk Cloud Platform 10.2.2510.14(不含)以前版本
Splunk Cloud Platform 10.1.2507.22(不含)以前版本
Splunk Cloud Platform 9.3.2411.132(不含)以前版本
Splunk Secure Gateway 3.10.6(不含)以前版本
Splunk Secure Gateway 3.9.20(不含)以前版本
Splunk Secure Gateway 3.8.67(不含)以前版本

[建議措施]
官方已針對漏洞釋出修復更新,請參考官方說明進行更新,網址如下: https://advisory.splunk.com/advisories/SVD-2026-0601

[參考資料]
1. https://nvd.nist.gov/vuln/detail/CVE-2026-20251
2. https://advisory.splunk.com/advisories/SVD-2026-0601

Forwarded National Information Security Analysis and Sharing Center Security Advisory Alert NISAC-200-202607-00000001

[Description]
Researchers have discovered an insecure deserialization vulnerability (Insecure Deserialization) (CVE-2026-20251) in Splunk Enterprise, Splunk Cloud Platform, and Splunk Secure Gateway. Authenticated remote attackers can exploit the deserialization of untrusted data to execute arbitrary code on affected servers. Please confirm and apply patches as soon as possible.

[Affected Platform]
Splunk Enterprise 10.2.0 to 10.2.3 versions
Splunk Enterprise 10.0.0 to 10.0.6 versions
Splunk Enterprise 9.4.0 to 9.4.11 versions
Splunk Enterprise 9.3.0 to 9.3.12 versions
Splunk Cloud Platform versions prior to 10.3.2512.12 (not including)
Splunk Cloud Platform versions prior to 10.2.2510.14 (not including)
Splunk Cloud Platform versions prior to 10.1.2507.22 (not including)
Splunk Cloud Platform versions prior to 9.3.2411.132 (not including)
Splunk Secure Gateway versions prior to 3.10.6 (not including)
Splunk Secure Gateway versions prior to 3.9.20 (not including)
Splunk Secure Gateway versions prior to 3.8.67 (not including)

[Recommendations]
The official has released fixes for the vulnerability. Please refer to the official instructions for updates at the following URL: https://advisory.splunk.com/advisories/SVD-2026-0601

[References]
1.https://nvd.nist.gov/vuln/detail/CVE-2026-20251
2.https://advisory.splunk.com/advisories/SVD-2026-0601
相 關 訊 息
公 告 時 間
 2026/7/9   至 2027/1/9   
點 閱 次 數
600

:::
 
地址:71005 台南市永康區南台街一號 (開車訪客請由中正南路→正南一街→進入南臺科技大學) HyperLink