CVE-2024-53246: Sensitive Information Disclosure through SPL commands
In Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7 and Splunk Cloud Platform versions below 9.3.2408.101, 9.2.2406.106, 9.2.2403.111, and 9.1.2312.206, an SPL command can potentially disclose sensitive information. The vulnerability requires the exploitation of another vulnerability, such as a Risky Commands Bypass, for successful exploitation.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-53246?
CVE-2024-53246 is considered a medium severity vulnerability due to its potential to disclose sensitive information.
How do I fix CVE-2024-53246?
To fix CVE-2024-53246, upgrade to Splunk Enterprise version 9.3.2 or above, or Splunk Cloud Platform version 9.3.2408.101 or above.
What versions of Splunk are affected by CVE-2024-53246?
CVE-2024-53246 affects Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7, as well as Splunk Cloud Platform versions below 9.3.2408.101, 9.2.2406.106, 9.2.2403.111, and 9.1.2312.206.
What type of information can be disclosed due to CVE-2024-53246?
CVE-2024-53246 can potentially disclose sensitive information through the exploitation of an SPL command.
Is CVE-2024-53246 related to other vulnerabilities?
Yes, CVE-2024-53246 requires the exploitation of another vulnerability to be effective.