Product
Splunk Enterprise Security versions below 8.6.1 contain a privilege escalation vulnerability where users with the ess_analyst role can modify UEBA search macros, allowing for unauthorized execution of administrative queries.