HTTP: HP SiteScope Log Analyzer Information Disclosure

This signature detects attempts to exploit a known vulnerability in HP SiteScope. Successful exploitation would allow the authenticated attacker to gain administrator role privileges.

Extended Description

Unspecified vulnerability in HP SiteScope 11.1x before 11.13, 11.2x before 11.24.391, and 11.3x before 11.30.521 allows remote authenticated users to gain privileges via unknown vectors, aka ZDI-CAN-2567.

Affected Products

Hp sitescope

References

CVE: CVE-2015-2120

Short Name
HTTP:HP-SITESCOPE-INF-DISC
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Analyzer CVE-2015-2120 Disclosure HP Information Log SiteScope
Release Date
06/09/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3474
False Positive
Unknown
Vendors

Hp

CVSS Score

8.7

Found a potential security threat?