CVE-2011-4643: Path Traversal
Published Jan 3, 2012
·Updated
Multiple directory traversal vulnerabilities in Splunk 4.x before 4.2.5 allow remote authenticated users to read arbitrary files via a .. (dot dot) in a URI to (1) Splunk Web or (2) the Splunkd HTTP Server, aka SPL-45243.
Affected Software
26 affected components
Splunk splunk=4.0
Splunk splunk=4.0.1
Splunk splunk=4.0.2
Splunk splunk=4.0.3
Splunk splunk=4.0.4
Splunk splunk=4.0.5
Splunk splunk=4.0.6
Splunk splunk=4.0.7
Splunk splunk=4.0.8
Splunk splunk=4.0.9
Splunk splunk=4.0.10
Splunk splunk=4.0.11
Splunk splunk=4.1
Splunk splunk=4.1.1
Splunk splunk=4.1.2
Splunk splunk=4.1.3
Splunk splunk=4.1.4
Splunk splunk=4.1.5
Splunk splunk=4.1.6
Splunk splunk=4.1.7
Splunk splunk=4.1.8
Splunk splunk=4.2
Splunk splunk=4.2.1
Splunk splunk=4.2.2
Splunk splunk=4.2.3
Splunk splunk=4.2.4
Event History
Jan 3, 2012
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4643?
The severity of CVE-2011-4643 is considered high due to the potential for unauthorized access to sensitive files.
2
How do I fix CVE-2011-4643?
To fix CVE-2011-4643, you should upgrade Splunk to version 4.2.5 or later, where the vulnerability is patched.
3
What systems are affected by CVE-2011-4643?
CVE-2011-4643 affects Splunk versions 4.0.x through 4.2.4.
4
Can CVE-2011-4643 be exploited remotely?
Yes, CVE-2011-4643 can be exploited remotely by authenticated users through crafted URI requests.
5
What types of attacks are associated with CVE-2011-4643?
CVE-2011-4643 is associated with directory traversal attacks that allow unauthorized file access.