Path Traversal in Splunk App for Lookup File Editing
CVE-2023-32714
Key Information:
- Vendor
Splunk
- Vendor
- CVE Published:
- 1 June 2023
What is CVE-2023-32714?
In the Splunk App for Lookup File Editing, versions prior to 4.0.1, a low-privileged user has the capability to exploit a path traversal vulnerability. This vulnerability is triggered through a specially crafted web request, allowing an unauthorized user to read and write data in restricted areas of the Splunk installation directory. This can lead to potential exposure of sensitive information and compromise the integrity of the application.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Splunk App for Lookup File Editing 4.0 < 4.0.1
References
EPSS Score
32% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved