Medium severity6.5NVD Advisory· Published Jan 22, 2024· Updated Jun 17, 2026
CVE-2024-23675
CVE-2024-23675
Description
In Splunk Enterprise versions below 9.0.8 and 9.1.3, Splunk app key value store (KV Store) improperly handles permissions for users that use the REST application programming interface (API). This can potentially result in the deletion of KV Store collections.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
5<9.0.8, <9.1.3+ 1 more
- (no CPE)range: <9.0.8, <9.1.3
- (no CPE)range: 9.0
- Range: -
Patches
Vulnerability mechanics
References
2- advisory.splunk.com/advisories/SVD-2024-0105nvdVendor Advisory
- research.splunk.com/application/8f0e8380-a835-4f2b-b749-9ce119364df0/nvdVendor Advisory
News mentions
0No linked articles in our index yet.