#VU116647 Resource exhaustion in Splunk Enterprise - CVE-2025-20370
Published: October 7, 2025
Splunk Enterprise
Splunk Inc.
Description
The vulnerability allows a remote user to perform a denial of service (DoS) attack.
The vulnerability exists due to application does not properly control consumption of internal resources when processing LDAP bind requests. A remote privileged user with "change_authentication" capability can initiate multiple LDAP bind requests to a specific internal endpoint and perform a denial of service (DoS) attack.