Impact
Splunk AI Toolkit versions before 6.0.0 allow users without admin or power roles to run searches with system-level privileges by invoking Agent Run History, during which the handler substitutes the user’s session key with a system token. This substitution grants access to all relevant data and the ability to read or delete other users’ search jobs, enabling privilege escalation and compromising system integrity.
Affected Systems
The vulnerability affects Splunk AI Toolkit installations where the version is less than 6.0.0, specifically the Splunk AI Toolkit app within the Splunk environment. It is independent of other Splunk components and is present in all affected versions of the app regardless of additional add‑ons.
Risk and Exploitability
The CVSS score of 8.3 indicates a high severity risk. The EPSS score is not available, and the vulnerability is not listed in the CISA KEV catalog, suggesting a moderate exploitation likelihood at this time. Attackers would need authenticated access to a non‑admin user account and would exploit the Agent Run History feature to elevate privileges, access sensitive data, and disrupt other users’ search jobs. The flaw involves system token replacement, making the likely attack vector internal to Splunk’s web interface or API.
OpenCVE Enrichment