In Splunk Enterprise versions below 8.1.13 and 8.2.10, the ‘createrss’ external search command overwrites existing Resource Description Format Site Summary (RSS) feeds without verifying permissions. This feature has been deprecated and disabled by default.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Splunk
Published: 2023-02-14T17:22:36.712Z
Updated: 2024-10-30T15:06:04.025Z
Reserved: 2023-01-10T21:39:55.583Z
Link: CVE-2023-22931
Vulnrichment
No data.
NVD
Status : Modified
Published: 2023-02-14T18:15:12.063
Modified: 2024-11-21T07:45:39.900
Link: CVE-2023-22931
Redhat
No data.