HTTP: Cisco SD-WAN Solution vManage Multiple Vulnerabilities

This signature detects attempts to exploit a known vulnerability against Cisco SD-WAN Solution vManage. A successful attack can lead to multiple vulnerabilities.

Extended Description

A vulnerability in the web UI of Cisco SD-WAN Solution vManage software could allow an authenticated, remote attacker to conduct SQL injection attacks on an affected system. The vulnerability exists because the web UI improperly validates SQL values. An attacker could exploit this vulnerability by authenticating to the application and sending malicious SQL queries to an affected system. A successful exploit could allow the attacker to modify values on, or return values from, the underlying database as well as the operating system.

References

CVE: CVE-2019-16010

Short Name
HTTP:CISCO:SD-WAN-SVM-MUL
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2019-16010 CVE-2019-16012 Cisco Multiple SD-WAN Solution Vulnerabilities vManage
Release Date
05/07/2020
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3377
False Positive
Unknown
CVSS Score

8.5

3.5

Found a potential security threat?