HTTP: Apache ActiveMQ Fileserver Web Application Arbitrary File Upload

This signature detects attempts to exploit a known vulnerability in Samsung Security Manager. A successful attack can lead to security bypass within the context of the running service.

Extended Description

Samsung Security Manager (SSM) before 1.31 allows remote attackers to execute arbitrary code by uploading a file with an HTTP (1) PUT or (2) MOVE request.

Affected Products

Samsung samsung_security_manager

Short Name
HTTP:APACHE:ACTIVEMQ-FILESERV
Severity
Critical
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
ActiveMQ Apache Application Arbitrary CVE-2015-3435 File Fileserver Upload Web
Release Date
05/25/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3557
False Positive
Unknown
Vendors

Samsung

CVSS Score

10.0

Found a potential security threat?