• About Us
  • Privacy Policy
  • Disclaimer
  • Contact Us
TechTrendFeed
  • Home
  • Tech News
  • Cybersecurity
  • Software
  • Gaming
  • Machine Learning
  • Smart Home & IoT
No Result
View All Result
  • Home
  • Tech News
  • Cybersecurity
  • Software
  • Gaming
  • Machine Learning
  • Smart Home & IoT
No Result
View All Result
TechTrendFeed
No Result
View All Result

Vital Splunk Enterprise Flaw Lets Attackers Run Code With out Authentication

Admin by Admin
June 13, 2026
Home Cybersecurity
Share on FacebookShare on Twitter


Ravie LakshmananJun 13, 2026Vulnerability / Enterprise Software program

Splunk has launched safety updates to handle a vital safety flaw in Splunk Enterprise that could possibly be exploited to conduct unauthenticated file operations and even distant code execution.

The vulnerability, tracked as CVE-2026-20253, is rated 9.8 on the CVSS scoring system.

“In Splunk Enterprise variations beneath 10.2.4 and 10.0.7, an unauthenticated consumer might create or truncate arbitrary information by a PostgreSQL sidecar service endpoint,” Splunk mentioned in an alert this week.

“The vulnerability exists as a result of the PostgreSQL sidecar service endpoint lacks authentication controls, permitting any network-reachable consumer to invoke file operations with out credentials.”

The problem has been addressed within the following variations –

  • Splunk Enterprise 10.0.0 to 10.0.6 – Fastened in 10.0.7
  • Splunk Enterprise 10.2.0 to 10.2.3 – Fastened in 10.2.4
  • Splunk Enterprise 10.4 – Not affected

Splunk, which is a part of Cisco, mentioned Splunk Cloud just isn’t impacted by the vulnerability as Postgres sidecars will not be used within the product.

What the Flaw is All About

On Friday, watchTowr Labs launched further technical particulars of CVE-2026-20253, stating it could possibly be exploited to realize pre-authenticated distant code execution on inclined programs by the “/v1/postgres/restoration/backup” and “/v1/postgres/restoration/restore” endpoints.

The assault chain works as follows –

  • Connect with an attacker-controlled database and dump its contents into an arbitrary file utilizing the /backup endpoint
  • Load the dump of the attacker-controlled database into the native PostgreSQL occasion utilizing the /restore endpoint by together with a “passfile” argument that specifies the trail to a “.pgpass” file (“/decide/splunk/var/packages/knowledge/postgres/.pgpass”) containing the password for the “postgres_admin” consumer
  • SQL queries outlined within the database dump will get executed by Splunk’s PostgreSQL occasion

An attacker might weaponize this weak point to outline a brand new perform that makes use of lo_export – a perform used to extract a BLOB from the database and put it aside as a file on the file system – to jot down attacker-controlled content material to a file, following which the perform will get executed through the restoration course of.

“At this level, we are able to authenticate, restore attacker-controlled SQL, and work together with the native database,” safety researchers Piotr Bazydlo and Yordan Ganchev mentioned. “As soon as we might restore attacker-controlled SQL into the native PostgreSQL occasion, we shortly put collectively a database dump template that gave us a managed file write.”

Armed with an arbitrary file write primitive on the Splunk file system, an attacker might escalate additional to distant code execution by overwriting a Python script that Splunk incessantly executes (e.g., “/decide/splunk/and so forth/apps/splunk_secure_gateway/bin/ssg_enable_modular_input.py”) to incorporate the malicious payload.

The complete sequence of actions is beneath –

  • Create a database and configure it such {that a} consumer can authenticate with out a password and grant it adequate permissions to invoke capabilities like lo_export
  • Use the /backup endpoint to drop a dump of the distant database onto the Splunk file system
  • Use the /restore endpoint to load the malicious database dump, set off execution of the malicious perform through the restore course of, and write an attacker-controlled Python script to the Splunk file system

Though there is no such thing as a proof of the flaw being exploited within the wild, the supply of the exploit specifics could be sufficient to drive menace actors to set off opportunistic makes an attempt. It is important that customers transfer shortly to use the fixes to remain protected.

Tags: AttackersAuthenticationCodeCriticalEnterpriseFlawLetsrunSplunk
Admin

Admin

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Trending.

Flip Your Toilet Right into a Good Oasis

Flip Your Toilet Right into a Good Oasis

May 15, 2025
Apollo joins the Works With House Assistant Program

Apollo joins the Works With House Assistant Program

May 17, 2025
Reconeyez Launches New Web site | SDM Journal

Reconeyez Launches New Web site | SDM Journal

May 15, 2025
Discover Vibrant Spring 2025 Kitchen Decor Colours and Equipment – Chefio

Discover Vibrant Spring 2025 Kitchen Decor Colours and Equipment – Chefio

May 17, 2025
Safety Amplified: Audio’s Affect Speaks Volumes About Preventive Safety

Safety Amplified: Audio’s Affect Speaks Volumes About Preventive Safety

May 18, 2025

TechTrendFeed

Welcome to TechTrendFeed, your go-to source for the latest news and insights from the world of technology. Our mission is to bring you the most relevant and up-to-date information on everything tech-related, from machine learning and artificial intelligence to cybersecurity, gaming, and the exciting world of smart home technology and IoT.

Categories

  • Cybersecurity
  • Gaming
  • Machine Learning
  • Smart Home & IoT
  • Software
  • Tech News

Recent News

Vital Splunk Enterprise Flaw Lets Attackers Run Code With out Authentication

Vital Splunk Enterprise Flaw Lets Attackers Run Code With out Authentication

June 13, 2026
Why Clinics Are Shifting Away from Cloud AI

Why Clinics Are Shifting Away from Cloud AI

June 13, 2026
  • About Us
  • Privacy Policy
  • Disclaimer
  • Contact Us

© 2025 https://techtrendfeed.com/ - All Rights Reserved

No Result
View All Result
  • Home
  • Tech News
  • Cybersecurity
  • Software
  • Gaming
  • Machine Learning
  • Smart Home & IoT

© 2025 https://techtrendfeed.com/ - All Rights Reserved