Splunk Enterprise Account Takeover - KizzMyAnthia.com
Https://github.com/redwaysecurity/CVEs/blob/main/CVE-2023-32707/README.md#!/usr/bin/env python3## Splunk admin account take over exploit - CVE-2023-32707# Author: [Redway Security](https://twitter.com/redwaysec))# Discovery: [Santiago Lopez](https://twitter.com/santi_lopezz99)## Vendor Description: A low-privilege user who holds a role that has the `edit_user` capability assigned# to it can escalate their privileges to that of the admin user by providing specially crafted web requests.## Versions Affected: Splunk Enterprise **below** 9.0.5,
Source: kizzmyanthia.com