HTTP: KeySight N6854A and N6841A RF Sensor UserFirmwareRequestHandler Directory Traversal
This signature detects attempts to exploit a known vulnerability against KeySight N6854A and N6841A RF Sensor. A successful attack can lead to directory traversal and arbitrary code execution.
Extended Description
The affected products are vulnerable to directory traversal, which may allow an attacker to obtain arbitrary operating system files.
References
CVE: CVE-2022-38129
URL: http://www.zerodayinitiative.com/advisories/ZDI-22-805/ https://www.keysight.com/ca/en/lib/software-detail/computer-software/n6854a-geolocation-server-and-n6841a-rf-sensor-software-sw319.html https://www.keysight.com/ca/en/assets/9922-01633/release-notes/N6841A-Release-Notes.txt?success=true https://www.tenable.com/security/research/tra-2022-28
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3