SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Splunk PostgreSQL sidecar service Arbitrary File Overwrite

Category: WEB-ATTACKS      

In Splunk Enterprise 10.2 versions below 10.2.4 and 10 versions below 10.0.7, an unauthenticated user could create or truncate arbitrary files through a PostgreSQL sidecar service endpoint. The vulnerability exists because the PostgreSQL sidecar service endpoint lacks authentication controls, allowing any network-reachable user to invoke file operations without credentials.


Relevant Information