Splunk Enterprise PDF Export Image Disclosure v9.3.0/9.2.3/9.1.6
CVE-2024-45734 Published on October 14, 2024

Low Privilege User can View Images on the Host Machine by using the PDF Export feature in Splunk Classic Dashboard
In Splunk Enterprise versions 9.3.0, 9.2.3, and 9.1.6, a low-privileged user that does not hold the "admin" or "power" Splunk roles could view images on the machine that runs Splunk Enterprise by using the PDF export feature in Splunk classic dashboards. The images on the machine could be exposed by exporting the dashboard as a PDF, using the local image path in the img tag in the source extensible markup language (XML) code for the Splunk classic dashboard.

NVD

Weakness Type

What is an Authorization Vulnerability?

The software does not restrict or incorrectly restricts access to a resource from an unauthorized actor.

CVE-2024-45734 has been classified to as an Authorization vulnerability or weakness.


Products Associated with CVE-2024-45734

Want to know whenever a new CVE is published for Splunk? stack.watch will email you.

 

Affected Versions

Splunk Enterprise: splunk_enterprise:

Exploit Probability

EPSS
0.10%
Percentile
26.47%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.