HTTP: ManageEngine ServiceDesk Plus User Privileges Bypass

This signature detects attempts to exploit a known vulnerability against ManageEngine ServiceDesk Plus. Successful exploitation could lead to unauthorized access.

Extended Description

ZOHO ManageEngine ServiceDesk Plus (SDP) before 9.0 build 9031 allows remote authenticated users to obtain sensitive ticket information via a (1) getTicketData action to servlet/AJaxServlet or a direct request to (2) swf/flashreport.swf, (3) reports/flash/details.jsp, or (4) reports/CreateReportTable.jsp.

Affected Products

Manageengine servicedesk_plus

References

BugTraq: 72302

CVE: CVE-2015-1480

Short Name
HTTP:MANAGENGINE-POL-BYPASS
Severity
Major
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Bypass CVE-2015-1480 ManageEngine Plus Privileges ServiceDesk User bid:72302
Release Date
03/02/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3796
False Positive
Unknown
Vendors

Manageengine

CVSS Score

4.0

Found a potential security threat?