Stormshield SNS protections for Splunk vulnerability (CVE-2024-36991)

The vulnerability tracked as CVE-2024-36991 impacts Splunk Enterprise versions below 9.2.2, 9.1.5, and 9.0.10. It allows an attacker to edit some files on the server.

Stormhield Network Security (SNS) appliance protects you from that attack, thanks to a dedicated IPS signature. To work efficiently on HTTPS traffic, it must be decrypted.

IDName
http:url:decoded.429Exploitation of a path traversal vulnerability in Splunk (CVE-2024-36991)