4
CVSSv2

CVE-2014-5197

Published: 12/08/2014 Updated: 13/08/2014
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in (1) Splunk Web or the (2) Splunkd HTTP Server in Splunk Enterprise 6.1.x prior to 6.1.3 allows remote authenticated users to read arbitrary files via a .. (dot dot) in a URI, related to search ids.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

splunk splunk 6.1

splunk splunk 6.1.1

splunk splunk 6.1.2