Loading HuntDB...

GHSA-mwr4-hjv7-wjrh

GitHub Security Advisory

⚠ Unreviewed HIGH Has CVE

Advisory Details

In Splunk Enterprise versions earlier than 8.2.12, 9.0.6, and 9.1.1, a dynamic link library (DLL) that ships with Splunk Enterprise references an insecure path for the OPENSSLDIR build definition. An attacker can abuse this reference and subsequently install malicious code to achieve privilege escalation on the Windows machine.

Related CVEs

Key Information

GHSA ID
GHSA-mwr4-hjv7-wjrh
Published
August 30, 2023 6:30 PM
Last Modified
April 4, 2024 7:17 AM
CVSS Score
7.5 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: November 24, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.