cognitive cybersecurity intelligence

News and Analysis

Search

Splunk Universal Forwarder on Windows Lets Non-Admin Users Access All Contents

Splunk Universal Forwarder on Windows Lets Non-Admin Users Access All Contents

A critical vulnerability (CVE-2025-20298, CVSS 8.0) in Splunk Universal Forwarder for Windows allows unauthorized access to installation directories due to incorrect permission assignments during installation or upgrades. Affected versions include those below 9.4.2, 9.3.4, 9.2.6, and 9.1.9. Immediate upgrades or specific mitigation commands are recommended to prevent potential data breaches.

Source: cybersecuritynews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts