Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

This site is deprecated. Please CLICK HERE for latest updates

Short Name

HTTP:MANAGENGINE-INF-DISC

Severity

Major

Recommended

Yes

Recommended Action

Drop

Category

HTTP

Keywords

ManageEngine Multiple Products FailOverHelperServlet copyfile Information Disclosure

Release Date

2015/02/25

Update Number

2470

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+

HTTP: ManageEngine Multiple Products FailOverHelperServlet copyfile Information Disclosure


This signature detects attempts to exploit a known vulnerability against ManageEngine OpManager, Applications Manager and IT360. A successful attack can lead to unauthorized information disclosure and loss of sensitive information.

Extended Description

The FailOverHelperServlet (aka FailServlet) servlet in ZOHO ManageEngine Applications Manager before 11.9 build 11912, OpManager 8 through 11.5 build 11400, and IT360 10.5 and earlier does not properly restrict access, which allows remote attackers and remote authenticated users to (1) read arbitrary files via the fileName parameter in a copyfile operation or (2) obtain sensitive information via a directory listing in a listdirectory operation to servlet/FailOverHelperServlet.

Affected Products

  • Zohocorp manageengine_applications_manager 11.9
  • Zohocorp manageengine_it360 10.5
  • Zohocorp manageengine_opmanager 11.4
  • Zohocorp manageengine_opmanager 11.5

References

  • CVE: CVE-2014-7863

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out