ACS
Last updated
Admin Config Service CLI for managing splunk cloud stacks.
Install with winget
$ winget install --id Splunk.ACS --exact --version 2.26.0Run in Command Prompt, PowerShell, or Windows Terminal. Prompts for any agreements.
Silent install command for ACS
ACS uses EXE (NSIS). The silent install switches are /S.
acs_v2.26.0_windows_amd64_installer.exe /S
For Intune admins
Stop chasing app updates. Pckgr patches them for you.
Automated application patching for Microsoft Intune. Pckgr keeps a curated library of 1,000+ apps continuously up-to-date in your tenant via Microsoft Graph - no manual repackaging, no chasing vendor sites.
Start free 30-day trialNo credit card required.
About
Admin Config Service CLI for managing splunk cloud stacks.
The Admin Config Service (ACS) provides a command line interface (CLI) that lets you perform many Splunk Cloud Platform configuration and management tasks in a self-service manner. You can use the CLI to run corresponding ACS API operations from the command line, without having to know specific API endpoint details.
Installers · v2.26.0
Copy a command tailored to that specific architecture, type, and scope - useful when winget would otherwise pick a different default.
Security
25 known CVEs via NVD
- medium5.5Patched in wingetCVE-2026-20259affects before 9.3.2411.131, 10.0.2503.14, 10.1.2507.23, +2 moreJun 10, 2026
In Splunk Enterprise versions below 10.2.4 and 10.0.7, and Splunk Cloud Platform versions below 10.4.2604.0, 10.3.2512.12, 10.2.2510.15, 10.1.2507.23, 10.0.2503.14, and 9.3.2411.131, a user who holds a Splunk role that contains the high-privilege capability `edit_saved_search_ow...
- high7.1Patched in wingetCVE-2026-20258affects before 9.3.2411.132, 10.1.2507.23, 10.2.2510.15, 10.3.2512.11Jun 10, 2026
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.3.2512.11, 10.2.2510.15, 10.1.2507.23, and 9.3.2411.132, a low-privileged user that does not hold the "admin" or "power" Splunk roles could store a malicious scrip...
- medium5.7Patched in wingetCVE-2026-20257affects before 9.3.2411.132, 10.1.2507.23, 10.2.2510.15, 10.3.2512.13Jun 10, 2026
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.3.2512.13, 10.2.2510.15, 10.1.2507.23, and 9.3.2411.132, a low-privileged user that does not hold the "admin" or "power" Splunk roles could craft a classic dashboa...
- medium5.7Patched in wingetCVE-2026-20256affects before 9.3.2411.132, 10.1.2507.23, 10.2.2510.15, 10.3.2512.13Jun 10, 2026
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.3.2512.13, 10.2.2510.15, 10.1.2507.23, and 9.3.2411.132, a low-privileged user that does not hold the 'admin' or 'power' Splunk roles could cause data exfiltration...
- medium5.7Patched in wingetCVE-2026-20255affects before 9.3.2411.132, 10.1.2507.23, 10.2.2510.15, 10.3.2512.13Jun 10, 2026
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.3.2512.13, 10.2.2510.15, 10.1.2507.23, and 9.3.2411.132, a low-privileged user that does not hold the "admin" or "power" Splunk roles could craft a malicious class...
- medium5.7Patched in wingetCVE-2026-20254affects before 9.3.2411.132, 10.1.2507.23, 10.2.2510.15, 10.3.2512.13Jun 10, 2026
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.3.2512.13, 10.2.2510.15, 10.1.2507.23, and 9.3.2411.132, a low-privileged user that does not hold the 'admin' or 'power' Splunk roles could craft a malicious class...
- high7.6Patched in wingetCVE-2026-20252affects before 9.3.2411.132, 10.1.2507.22, 10.2.2510.14, +2 moreJun 10, 2026
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, and Splunk Cloud Platform versions below 10.4.2604.3, 10.3.2512.12, 10.2.2510.14, 10.1.2507.22, and 9.3.2411.132, a low-privileged user that does not hold the "admin" or "power" Splunk roles could send serve...
- high8.8Patched in wingetCVE-2026-20251affects before 9.3.2411.132, 10.1.2507.22, 10.2.2510.14, 10.3.2512.12Jun 10, 2026
In Splunk Enterprise versions below 10.2.4, 10.0.7, 9.4.12, and 9.3.13, Splunk Cloud Platform versions below 10.3.2512.12, 10.2.2510.14, 10.1.2507.22, and 9.3.2411.132, and Splunk Secure Gateway versions below 3.10.6, 3.9.20, and 3.8.67, a low-privileged user that does not hold...
See a CVE that affects your fleet? Push the patched version to Intune in one click with Pckgr - automated patching is the only way to keep up.
Frequently asked questions
How do I install ACS on Windows?
How do I install ACS silently for unattended deployment?
What are the silent install switches for ACS?
How do I uninstall ACS via winget?
Is ACS free?
Does ACS work on Windows 10?
How do I keep ACS up to date?
Recent versions
- 2.26.0latest
- 2.25.0
- 2.24.0
- 2.23.0
- 2.22.0
- 2.21.0
- 2.20.2
- 2.20.1
- 2.20.0
- 2.19.0