Threat Advisories:
Highlights of Our CISO Dinner
Upgrading struggling vulnerability management programs to Threat Exposure Management, with Host, CISO Al Lindseth formerly from Plains All American Pipeline and PWC - 6 minute podcast
0:00
0:00
👥 Play Count: Loading...

Critical Path Traversal Flaw in Splunk Enterprise Puts Windows Systems at Risk

Red | Vulnerability Report
Download PDF

A high-severity vulnerability identified in Splunk, CVE-2024-36991, has been discovered. This vulnerability is associated with Path Traversal on the “/modules/messaging/” endpoint in Splunk Enterprise on Windows. It allows attackers to traverse the file system and access files or directories outside the restricted directory. A proof of concept for this vulnerability is publicly available on GitHub.

What’s new on HivePro

Get through updates and upcoming events, and more directly in your inbox