A misconfiguration in the node default path allows for local privilege escalation from a lower privileged user to the Splunk user in Splunk Enterprise versions before 8.1.1 on Windows.
2022-05-06T17:15:08.710
2024-11-21T06:28:05.000
Modified
CVSSv3.1: 8.8 (HIGH)
AV:L/AC:L/Au:N/C:P/I:P/A:P
3.9
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | splunk | splunk | < 8.1.1 | Yes |
Operating System | microsoft | windows | - | No |