CVE-2023-32717

medium

Description

On Splunk Enterprise versions below 9.0.5, 8.2.11, and 8.1.14, and in Splunk Cloud Platform versions below 9.0.2303.100, an unauthorized user can access the {{/services/indexing/preview}} REST endpoint to overwrite search results if they know the search ID (SID) of an existing search job.

References

https://research.splunk.com/application/bbe26f95-1655-471d-8abd-3d32fafa86f8/

https://advisory.splunk.com/advisories/SVD-2023-0612

Details

Source: Mitre, NVD

Published: 2023-06-01

Updated: 2024-04-10

Risk Information

CVSS v2

Base Score: 4

Vector: CVSS2#AV:N/AC:L/Au:S/C:N/I:P/A:N

Severity: Medium

CVSS v3

Base Score: 4.3

Vector: CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Severity: Medium