VYPR
Medium severity4.9NVD Advisory· Published Oct 14, 2024· Updated Jun 17, 2026

CVE-2024-45739

CVE-2024-45739

Description

In Splunk Enterprise versions below 9.3.1, 9.2.3, and 9.1.6, the software potentially exposes plaintext passwords for local native authentication Splunk users. This exposure could happen when you configure the Splunk Enterprise AdminManager log channel at the DEBUG logging level.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • Splunk/Splunk2 versions
    cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*+ 1 more
    • cpe:2.3:a:splunk:splunk:*:*:*:*:enterprise:*:*:*range: >=9.1.0,<9.1.6
    • cpe:2.3:a:splunk:splunk:9.3.1:*:*:*:enterprise:*:*:*
  • Splunk/Splunk Enterprisellm-fuzzy2 versions
    <9.3.1, <9.2.3, <9.1.6+ 1 more
    • (no CPE)range: <9.3.1, <9.2.3, <9.1.6
    • (no CPE)range: 9.3

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.