- Description
- In Splunk Enterprise versions below 9.3.2, 9.2.4, and 9.1.7, and versions below 3.4.261 and 3.7.13 of the Splunk Secure Gateway app on Splunk Cloud Platform, a low-privileged user that does not hold the “admin“ or “power“ Splunk roles could perform a Remote Code Execution (RCE).
- Source
- prodsec@splunk.com
- NVD status
- Awaiting Analysis
CVSS 3.1
- Type
- Secondary
- Base score
- 8.8
- Impact score
- 5.9
- Exploitability score
- 2.8
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
- prodsec@splunk.com
- CWE-502
- Hype score
- Not currently trending
برای Splunk آسیب پذیری جدیدی با کد شناسایی CVE-2024-53247 و از نوع RCE منتشر شده است .نسخه های قبل از 9.3.2 و 9.2.4 و 9.1.7 مربوط به Splunk Enterprise و نسخه های قبل از 3.2.461 و 3.7.13 مربوط به Splunk Secure Gateway دارای این آسیب پذیری هستند. https://t.co/Poz3aKYxT1 https://t.
@AmirHossein_sec
18 Dec 2024
22 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Critical Splunk Vulnerability (CVE-2024-53247): Upgrade Splunk Secure Gateway to patched versions or disable immediately to prevent remote code execution (CVSS 8.8). #CyberSecurity #threatcure #SplunkSecurity #VulnerabilityAlert #PatchNow #RemoteCodeExecution #DataProtection htt
@ThreatCure_25
16 Dec 2024
1 Impression
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
A critical vulnerability (CVE-2024-53247) in the Splunk Secure Gateway app allows low-privileged users to execute arbitrary code, risking security. Immediate action required. ⚠️ #SplunkUsers #CodeExecution #SecurityRisk #CybersecurityNews link: https://t.co/l4zUaJnyQ0 https://t.
@TweetThreatNews
12 Dec 2024
1 Impression
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
Remote Code Execution through Deserialization of Untrusted Data in Splunk Secure Gateway app (CVE-2024-53247) https://t.co/7Ypiqb1oTC
@TMJIntel
12 Dec 2024
20 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes
CVE-2024-53247: Splunk Secure Gateway App Vulnerability Allows Remote Code Execution https://t.co/myDzK8OIfQ
@Dinosn
12 Dec 2024
7808 Impressions
71 Retweets
162 Likes
32 Bookmarks
0 Replies
1 Quote
🚨 Critical Splunk & Atlassian Vulnerabilities Alert 🚨 High-severity flaws in Splunk (RCE via CVE-2024-53247) and Atlassian products could allow remote code execution & privilege escalation. Patch now!
@NetSec_Ian
11 Dec 2024
38 Impressions
0 Retweets
0 Likes
0 Bookmarks
1 Reply
0 Quotes
CVE-2024-53247 Remote Code Execution in Splunk Enterprise and Secure Gateway App... https://t.co/UyVukHMvBq Vulnerability Alert Subscriptions: https://t.co/hrQhy5uz4x
@VulmonFeeds
10 Dec 2024
17 Impressions
0 Retweets
0 Likes
0 Bookmarks
0 Replies
0 Quotes