HTTP: Novell ZENworks Configuration Management Information Disclosure

This signature detects attempts to exploit a known vulnerability against Novell ZENworks Configuration Management. Attackers can submit a malicious directory traversal attack, which can lead to information disclosure and arbitrary file download.

Extended Description

Directory traversal vulnerability in the GetFle method in the umaninv service in Novell ZENworks Configuration Management (ZCM) 11.2.3 allows remote attackers to read arbitrary files via a .. (dot dot) in the Filename parameter in a GetFile action to zenworks-unmaninv/.

Affected Products

Novell zenworks_configuration_management

Short Name
HTTP:DIR:NOVELL-ZENWORKS-TRAV
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2013-1084 Configuration Disclosure Information Management Novell ZENworks bid:39114
Release Date
11/08/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3761
False Positive
Unknown
Vendors

Novell

CVSS Score

5.0

Found a potential security threat?