Low severity2.5NVD Advisory· Published Mar 26, 2025· Updated Jun 17, 2026
CVE-2025-20233
CVE-2025-20233
Description
In the Splunk App for Lookup File Editing versions below 4.0.5, a script in the app used the chmod and makedirs Python functions in a way that resulted in overly broad read and execute permissions. This could lead to improper access control for a low-privileged user.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:splunk:splunk_app_for_lookup_file_editing:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:splunk:splunk_app_for_lookup_file_editing:*:*:*:*:*:*:*:*range: >=4.0.0,<4.0.5
- (no CPE)range: <4.0.5
- (no CPE)range: 4.0
Patches
Vulnerability mechanics
References
1- advisory.splunk.com/advisories/SVD-2025-0310nvdVendor Advisory
News mentions
0No linked articles in our index yet.