← Back

CVE-2024-45739

nvd nist
Published: Oct 14, 2024Modified: Jun 17, 2026

JSON object

Loading...
4.9
Vector
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Exploitability: 1.2 / Impact: 3.6
Source: NVD

Description

In Splunk Enterprise versions below 9.3.1, 9.2.3, and 9.1.6, the software potentially exposes plaintext passwords for local native authentication Splunk users. This exposure could happen when you configure the Splunk Enterprise AdminManager log channel at the DEBUG logging level.

Affected (3)

Products: Splunk: Splunk
1 product
Splunk
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Splunk
From 9.1.0 to 9.1.6
From 9.2.0 to 9.2.3
Version 9.3.1

References (2)

Timeline

No history available yet.