Splunk Arbitrary File Read and Write (CVE-2023-32714)

Related Vulnerabilities: CVE-2023-32714  

Check Point Reference: CPAI-2023-0449 Date Published: 17 Apr 2024 Severity: High Last Updated: Wednesday 17 April, 2024 Source: Industry Reference:CVE-2023-32714
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Splunk 8.1.0 and later, prior to 8.1.14
Splunk 8.2.0 and later, prior to 8.2.11
Splunk 9.0.0 and later, prior to 9.0.5
Splunk App for Lookup File Editing prior to 4.0.1 Vulnerability Description An arbitrary file read and write vulnerability exists in Splunk. Successful exploitation of this vulnerability could allow a remote attacker to write and read arbitrary file.