In Splunk Enterprise versions below 8.1.13 and 8.2.10, the ‘createrss’ external search command overwrites existing Resource Description Format Site Summary (RSS) feeds without verifying permissions. This feature has been deprecated and disabled by default.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: Splunk
Published: 2023-02-14T17:22:36.712Z
Updated: 2025-01-15T17:05:36.477Z
Reserved: 2023-01-10T21:39:55.583Z
Link: CVE-2023-22931

No data.

Status : Modified
Published: 2023-02-14T18:15:12.063
Modified: 2024-11-21T07:45:39.900
Link: CVE-2023-22931

No data.