First published: Sun Aug 26 2012(Updated: )
Directory traversal vulnerability in Blue Coat Reporter 9.x before 9.2.4.13, 9.2.5.x before 9.2.5.1, and 9.3 before 9.3.1.2 on Windows allows remote attackers to read arbitrary files, and consequently execute arbitrary code, via an unspecified HTTP request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bluecoat Reporter | =9.2.4.1 | |
Bluecoat Reporter | =9.2.4.12 | |
Bluecoat Reporter | =9.2.5 | |
Bluecoat Reporter | =9.3.1.1 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-5127 has a moderate severity level due to its potential for exposing sensitive files to attackers.
To fix CVE-2011-5127, upgrade Blue Coat Reporter to version 9.2.4.13, 9.2.5.1, or 9.3.1.2 or later.
CVE-2011-5127 affects Blue Coat Reporter versions 9.2.4.1, 9.2.4.12, 9.2.5, and 9.3.1.1.
CVE-2011-5127 is a directory traversal vulnerability that allows remote attackers to read arbitrary files.
Yes, CVE-2011-5127 can potentially allow attackers to execute arbitrary code after reading sensitive files.