CVE-2024-23676 affects Splunk versions below 9.0.8 and 9.1.3, allowing a low-privileged user to view unauthorized index metrics via the “mrollup” SPL command. This vulnerability has a low CVSS score of 3.5, requiring user interaction from a high-privileged user for exploitation, and primarily impacts confidentiality. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 9.1.2308.200CPE matchmatch criteria | cpe:2.3:a:splunk:cloud:*:*:*:*:*:*:*:* | ||
>= 9.0.0, < 9.0.8CPE matchmatch criteria | cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:* | ||
>= 9.1.0, < 9.1.3CPE matchmatch criteria | cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.2 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.