PT-2024-1283 · Splunk · Splunk Enterprise

Danylo Dmytriiev

+1

·

Published

2024-01-18

·

Updated

2024-04-10

·

CVE-2024-23678

CVSS v3.1

8.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Splunk Enterprise for Windows versions below 9.0.8 and 9.1.3
Description The issue is related to the incorrect sanitization of path input data, resulting in the unsafe deserialization of untrusted data from a separate disk partition on the machine. This can potentially impact the integrity, availability, and confidentiality of protected information.
Recommendations For versions below 9.0.8, update to version 9.0.8 or later. For versions below 9.1.3, update to version 9.1.3 or later. As a temporary workaround, consider restricting access to sensitive data and implementing additional security measures to minimize the risk of exploitation.

Fix

Deserialization of Untrusted Data

RCE

Weakness Enumeration

Related Identifiers

BDU:2024-00721
CVE-2024-23678

Affected Products

Splunk Enterprise