Splunk App for Lookup File Editing
cpe:2.3:a:splunk:splunk_app_for_lookup_file_editing:*:*:*:*:*:*:*
- < 4.0.5
A vulnerability exists in the Splunk App for Lookup File Editing, affecting versions prior to 4.0.5. A script within the application misuses the 'chmod' and 'makedirs' Python functions, leading to excessively permissive read and execute rights. This flaw could allow low-privileged users to bypass intended access controls.
The vulnerability could enable low-privileged users to gain improper access, potentially allowing them to read or execute files they shouldn't be able to.
Users are advised to upgrade the Splunk App for Lookup File Editing to version 4.0.5 or later.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.