216.73.217.22

CVE-2026-20165

· Published 11/03/2026 17:16 · Modified 12/03/2026 21:08

Labels: CVE-2026-20165 2026-03-11CVE-2026-20165CWE-532[email protected]

Essential information

Published
11/03/2026 17:16
Modified
12/03/2026 21:08
Author
Creator
CVSS
6.3 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

CVSS metrics

Description

In Splunk Enterprise versions below 10.2.1, 10.0.4, 9.4.9, and 9.3.10, and Splunk Cloud Platform versions below 10.2.2510.7, 10.1.2507.17, 10.0.2503.12, and 9.3.2411.124, a low-privileged user that does not hold the "admin" or "power" Splunk roles could retrieve sensitive information by inspecting the job's search log due to improper access control in the MongoClient logging channel.

NVD status

Status
Awaiting Analysis — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
splunk / splunk enterprise cpe:2.3:a:splunk:splunk_enterprise:<10.2.1,10.0.4,9.4.9,9.3.10:*:*:*:*:*:*:*
splunk / splunk cloud platform cpe:2.3:a:splunk:splunk_cloud_platform:<10.2.2510.7,10.1.2507.17,10.0.2503.12,9.3.2411.124:*:*:*:*:*:*:*

References