Security Advisory

CVE-2024-45733

8.8
HIGH

Vulnerability Description

In Splunk Enterprise for Windows versions below 9.2.3 and 9.1.6, a low-privileged user that does not hold the "admin" or "power" Splunk roles could perform a Remote Code Execution (RCE) due to an insecure session storage configuration.
Published Date October 14, 2024
Official Source NIST NVD Advisory