Back

MEDIUM

Information Disclosure in Mobile Alert Responses in Splunk Secure Gateway

Published Dec 10, 2024

Description

In Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7 and versions below 3.2.462, 3.7.18, and 3.8.5 of the Splunk Secure Gateway app on Splunk Cloud Platform, a low-privileged user that does not hold the “admin“ or “power“ Splunk roles could see alert search query responses using Splunk Secure Gateway App Key Value Store (KVstore) collections endpoints due to improper access control.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner Splunk
Published Dec 10, 2024
Updated Feb 28, 2025
Reserved Nov 19, 2024

CISA Vulnrichment

Updated Dec 10, 2024

NVD

Status Deferred
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner Splunk
Published Dec 10, 2024
Updated Feb 28, 2025

GitHub

No data