6.5

CVE-2026-20298

Sensitive Information Disclosure through the storage/passwords REST Endpoint in Splunk Enterprise

In Splunk Enterprise versions below 10.4.1, 10.2.5, 10.0.8, and 9.4.13, and Splunk Cloud Platform versions below 10.5.2605.0, 10.4.2604.6, 10.3.2512.15, 10.2.2510.18, and 10.1.2507.24, a low-privileged user that does not hold the 'admin' or 'power' Splunk roles could view stored credential hashes when they access the `/servicesNS/-/-/storage/passwords` REST endpoint through the `|rest` Search Processing Language (SPL) command.<br><br>The exposure happens because the `|rest` SPL command returns the `encr_password` field in the results of the `/servicesNS/-/-/storage/passwords` REST endpoint.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SplunkSplunk SwEditionenterprise Version >= 9.4.0 < 9.4.13
SplunkSplunk SwEditionenterprise Version >= 10.0.0 < 10.0.8
SplunkSplunk SwEditionenterprise Version >= 10.2.0 < 10.2.5
SplunkSplunk Version10.4.0 SwEditionenterprise
SplunkSplunk Cloud Platform Version >= 10.1.2507 < 10.1.2507.24
SplunkSplunk Cloud Platform Version >= 10.2.2510 < 10.2.2510.18
SplunkSplunk Cloud Platform Version >= 10.3.2512 < 10.3.2512.15
SplunkSplunk Cloud Platform Version >= 10.4.2604 < 10.4.2604.6
VulnDex Vulnerability Enrichment
Diese Information steht angemeldeten Benutzern zur Verfügung. Login Login
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.23% 0.141
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Cisco PSIRT 5.3 1.6 3.6
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.

https://advisory.splunk.com/advisories/SVD-2026-0704
Vendor Advisory