CVE-2024-23678

In Splunk Enterprise for Windows versions below 9.0.8 and 9.1.3, Splunk Enterprise does not correctly sanitize path input data. This results in the unsafe deserialization of untrusted data from a separate disk partition on the machine. This vulnerability only affects Splunk Enterprise for Windows.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*

History

29 Jan 2024, 17:44

Type Values Removed Values Added
CVSS v2 : unknown
v3 : 7.5
v2 : unknown
v3 : 8.8
CWE NVD-CWE-noinfo
CPE cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*
First Time Splunk splunk
Splunk
References () https://advisory.splunk.com/advisories/SVD-2024-0108 - () https://advisory.splunk.com/advisories/SVD-2024-0108 - Vendor Advisory
References () https://research.splunk.com/application/947d4d2e-1b64-41fc-b32a-736ddb88ce97/ - () https://research.splunk.com/application/947d4d2e-1b64-41fc-b32a-736ddb88ce97/ - Vendor Advisory

24 Jan 2024, 19:15

Type Values Removed Values Added
References
  • () https://research.splunk.com/application/947d4d2e-1b64-41fc-b32a-736ddb88ce97/ -

23 Jan 2024, 13:44

Type Values Removed Values Added
Summary
  • (es) En las versiones de Splunk Enterprise para Windows inferiores a 9.0.8 y 9.1.3, Splunk Enterprise no sanitiza correctamente los datos de entrada de ruta. Esto da como resultado la deserialización insegura de datos que no son de confianza desde una partición de disco separada en la máquina. Esta vulnerabilidad sólo afecta a Splunk Enterprise para Windows.

22 Jan 2024, 21:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-01-22 21:15

Updated : 2024-04-10 01:15


NVD link : CVE-2024-23678

Mitre link : CVE-2024-23678

CVE.ORG link : CVE-2024-23678


JSON object : View

Products Affected

splunk

  • splunk
CWE
NVD-CWE-noinfo CWE-20

Improper Input Validation