High severity7.8NVD Advisory· Published Aug 30, 2023· Updated Jun 17, 2026
CVE-2023-40597
CVE-2023-40597
Description
In Splunk Enterprise versions lower than 8.2.12, 9.0.6, and 9.1.1, an attacker can exploit an absolute path traversal to execute arbitrary code that is located on a separate disk.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:splunk:splunk_cloud_platform:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:splunk:splunk_cloud_platform:*:*:*:*:*:*:*:*range: <=9.0.2305.100
- (no CPE)range: -
<8.2.12, <9.0.6, <9.1.1+ 1 more
- (no CPE)range: <8.2.12, <9.0.6, <9.1.1
- (no CPE)range: 8.2
Patches
Vulnerability mechanics
References
2- advisory.splunk.com/advisories/SVD-2023-0806nvdVendor Advisory
- research.splunk.com/application/356bd3fe-f59b-4f64-baa1-51495411b7ad/nvdVendor Advisory
News mentions
0No linked articles in our index yet.