Aller au contenu

Fiche vulnérabilité

CVE-2024-45739 : faille moyenne splunk splunk (CVSS 4.9)

Description

In Splunk Enterprise versions below 9.3.1, 9.2.3, and 9.1.6, the software potentially exposes plaintext passwords for local native authentication Splunk users. This exposure could happen when you configure the Splunk Enterprise AdminManager log channel at the DEBUG logging level.

En bref

Sévérité
Moyenne (CVSS 4.9)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Exploitation active
Non signalée par la CISA
Publication
14 oct. 2024
Dernière mise à jour
17 juin 2026

Produits concernés

  • splunk splunk

Références

Rechercher une autre vulnérabilité dans la base CVE