HTTP: Cisco Prime Infrastructure and EPNM Directory Traversal

This signature detects attempts to exploit a known vulnerability against Cisco Prime Infrastructure and EPNM. A successful attack can lead to Directory Traversal.

Extended Description

A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager software could allow an authenticated, remote attacker to download and view files within the application that should be restricted. This vulnerability is due to improper sanitization of user-supplied input in HTTP request parameters that describe filenames. An attacker could exploit this vulnerability by using directory traversal techniques to submit a path to a desired file location. A successful exploit could allow the attacker to view application files that may contain sensitive information.

Affected Products

Cisco prime_infrastructure

References

CVE: CVE-2019-1819

Short Name
HTTP:DIR:CISCO-PRIME-EPNM-DIR
Severity
Minor
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2019-1819 Cisco Directory EPNM Infrastructure Prime Traversal and
Release Date
06/24/2019
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3590
False Positive
Unknown
Vendors

Cisco

CVSS Score

4.0

Found a potential security threat?