CVE-2014-5197

Publication date

2014-08-12 20:00:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in (1) Splunk Web or the (2) Splunkd HTTP Server in Splunk Enterprise 6.1.x before 6.1.3 allows remote authenticated users to read arbitrary files via a .. (dot dot) in a URI, related to search ids.