FeedSplunk Enterprise Pre-Auth RCE Chain Exposes Database With Z...
Cyber Security News

Splunk Enterprise Pre-Auth RCE Chain Exposes Database With Zero Authentication

📅 13 June 2026 at 11:12 UTC📰 Cyber Security NewsView original source ↗
Splunk Enterprise Pre-Auth RCE Chain Exposes Database With Zero Authentication

A critical vulnerability chain in Splunk Enterprise has been disclosed, enabling unauthenticated attackers to achieve remote code execution (RCE) through a misconfigured PostgreSQL sidecar service. Tracked as CVE-2026-20253, the flaw has a CVSS score of 9.8 and affects Splunk Enterprise 10 and later. The issue originates from the PostgreSQL Sidecar Service, an internal component introduced […] The post Splunk Enterprise Pre-Auth RCE Chain Exposes Database With Zero Authentication appeared first on Cyber Security News.

Read the full article

This is a curated summary. The complete article is available at Cyber Security News.

Read on Cyber Security News
← Back to feed