[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248585

 
 

909

 
 

195621

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2023-22940Date: (C)2023-02-15   (M)2024-04-17


In Splunk Enterprise versions below 8.1.13, 8.2.10, and 9.0.4, aliases of the ���collect��� search processing language (SPL) command, including ���summaryindex���, ���sumindex���, ���stash���,��� mcollect���, and ���meventcollect���, were not designated as safeguarded commands. The commands could potentially allow for the exposing of data to a summary index that unprivileged users could access. The vulnerability requires a higher privileged user to initiate a request within their browser, and only affects instances with Splunk Web enabled.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V3 Severity:CVSS V2 Severity:
CVSS Score : 5.7CVSS Score :
Exploit Score: 2.1Exploit Score:
Impact Score: 3.6Impact Score:
 
CVSS V3 Metrics:CVSS V2 Metrics:
Attack Vector: NETWORKAccess Vector:
Attack Complexity: LOWAccess Complexity:
Privileges Required: LOWAuthentication:
User Interaction: REQUIREDConfidentiality:
Scope: UNCHANGEDIntegrity:
Confidentiality: HIGHAvailability:
Integrity: NONE 
Availability: NONE 
  
Reference:
https://advisory.splunk.com/advisories/SVD-2023-0210
https://research.splunk.com/application/ee69374a-d27e-4136-adac-956a96ff60fd/

© SecPod Technologies