In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.200 and 9.1.2308.207, a low-privileged user that does not hold the admin or power Splunk roles could create experimental items.
Advisories
Source ID Title
EUVD EUVD EUVD-2024-36382 In Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10 and Splunk Cloud Platform versions below 9.1.2312.200 and 9.1.2308.207, a low-privileged user that does not hold the admin or power Splunk roles could create experimental items.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 10 Dec 2024 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Splunk

Published:

Updated: 2025-02-28T11:03:55.127Z

Reserved: 2024-05-30T16:36:21.002Z

Link: CVE-2024-36995

cve-icon Vulnrichment

Updated: 2024-08-02T03:43:50.580Z

cve-icon NVD

Status : Modified

Published: 2024-07-01T17:15:08.707

Modified: 2024-11-21T09:22:59.907

Link: CVE-2024-36995

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.