← Back to CVE List

CVE-2024-53243

Published: 2024-12-10T18:15Z
Last Modified: 2024-12-10T18:15Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7 and versions below 3.2.462, 3.7.18, and 3.8.5 of the Splunk Secure Gateway app on Splunk Cloud Platform, a low-privileged user that does not hold the “admin“ or “power“ Splunk roles could see alert search query responses using Splunk Secure Gateway App Key Value Store (KVstore) collections endpoints due to improper access control. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt