CVE-2025-20386 - Incorrect permission assignment on Splunk Enterprise for Windows during new inst...

CVE-2025-20386 - Incorrect permission assignment on Splunk Enterprise for Windows during new inst...

CVE ID : CVE-2025-20386 Published : Dec. 3, 2025, 5:15 p.m. | 1 hour, 14 minutes ago Description : In Splunk Enterprise for Windows versions below 10.0.2, 9.4.6, 9.3.8, and 9.2.10, a new installation of or an upgrade to an affected version can result in incorrect permissions assignment in the Splunk Enterprise for Windows Installation directory. This lets non-administrator users on the machine access the directory and all its contents. Severity: 8.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
Dec. 3, 2025
Affected Product: Splunk

Source: Telegram CVE Monitor