HTTP: Cisco Prime Data Center Network Manager Information Disclosure

This signature detects attempts to exploit a known flaw against Cisco Prime Data Center Network Manager. A successful attack can result in Information Disclosure.

Extended Description

Directory traversal vulnerability in the fmserver servlet in Cisco Prime Data Center Network Manager (DCNM) before 7.1(1) allows remote attackers to read arbitrary files via a crafted pathname, aka Bug ID CSCus00241.

Affected Products

Cisco prime_data_center_network_manager

References

CVE: CVE-2015-0666

Short Name
HTTP:DIR:CISCO-PRIME-DATA-ID
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2015-0666 Center Cisco Data Disclosure Information Manager Network Prime
Release Date
02/11/2016
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown
Vendors

Cisco

CVSS Score

7.8

Found a potential security threat?