Information disclosure in Splunk Enterprise - CVE-2023-32710
Published: June 5, 2023
Splunk Enterprise
Splunk Inc.
Description
The vulnerability allows a remote user to gain access to potentially sensitive information.
The vulnerability exists due to excessive data output by the application. A remote user can perform an unauthorized transfer of data from a search using the ‘copyresults’ command if they know the search ID (SID) of a search job that has recently run.