First published: Thu Jan 19 2012(Updated: )
Multiple directory traversal vulnerabilities in lmgrd in Flexera FlexNet Publisher 11.10 (aka FlexNet License Server Manager) allow remote attackers to execute arbitrary code via vectors related to save, rename, and load operations on log files. NOTE: this might overlap CVE-2011-1389.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Flexera FlexNet Publisher | =11.10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2011-4135 is considered high due to its potential for remote code execution.
To fix CVE-2011-4135, upgrade to a patched version of FlexNet Publisher beyond 11.10.
CVE-2011-4135 allows remote attackers to exploit directory traversal vulnerabilities to execute arbitrary code.
FlexNet Publisher version 11.10 is affected by CVE-2011-4135.
Yes, CVE-2011-4135 can be exploited by remote attackers without requiring authentication.