CVE-2011-2737: Infoleak
Published Aug 25, 2011
·Updated
RSA enVision 3.x and 4.x before 4 SP4 P3 allows remote attackers to read arbitrary files via unspecified vectors, related to an "arbitrary file retrieval vulnerability."
Affected Software
10 affected components
RSA EnVision=3.3.6_build_0115
RSA EnVision=3.7.0
RSA EnVision=3.5.1
RSA EnVision=3.7.0-sp1
RSA EnVision=4.0-sp3
RSA EnVision<=4.0
RSA EnVision=3.5.2
RSA EnVision=4.0-sp2
RSA EnVision=4.0-sp1
RSA EnVision=3.5.0
Event History
Aug 25, 2011
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-2737?
CVE-2011-2737 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2011-2737?
To fix CVE-2011-2737, upgrade RSA enVision to version 4 SP4 P3 or later.
3
What impact does CVE-2011-2737 have on RSA enVision?
CVE-2011-2737 allows remote attackers to read arbitrary files, potentially leading to sensitive data exposure.
4
Which versions of RSA enVision are affected by CVE-2011-2737?
Affected versions include RSA enVision 3.x and 4.x prior to 4 SP4 P3.
5
Is there a workaround for CVE-2011-2737?
Currently, the recommended action is to apply the available software update as there are no known effective workarounds.