Vulnerability Name: | CVE-2009-3843 (CCN-54361) | ||||||||
Assigned: | 2009-11-18 | ||||||||
Published: | 2009-11-18 | ||||||||
Updated: | 2017-08-17 | ||||||||
Summary: | HP Operations Manager 8.10 on Windows contains a "hidden account" in the XML file that specifies Tomcat users, which allows remote attackers to conduct unrestricted file upload attacks, and thereby execute arbitrary code, by using the org.apache.catalina.manager.HTMLManagerServlet class to make requests to manager/html/upload. | ||||||||
CVSS v3 Severity: | 10.0 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H)
| ||||||||
CVSS v2 Severity: | 10.0 High (CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C) 8.3 High (Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C)
8.3 High (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C/E:F/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-264 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: MITRE Type: CNA CVE-2009-3843 Source: CCN Type: HP Security Bulletin HPSBMA02478 SSRT090251 rev.1 HP Operations Manager for Windows, Remote Unauthorized Access Source: HP Type: UNKNOWN HPSBMA02478 Source: CCN Type: SA37444 HP Operations Manager Undocumented Account Source: SECUNIA Type: Vendor Advisory 37444 Source: CCN Type: SECTRACK ID: 1023222 HP Operations Manager Hidden Account Lets Remote Users Access the System Source: SECTRACK Type: UNKNOWN 1023222 Source: OSVDB Type: UNKNOWN 60317 Source: CCN Type: OSVDB ID: 60317 HP Operations Manager on Windows Unspecified Access Restriction Bypass Source: CCN Type: BID-37086 HP Operations Manager Remote Unauthorized Access Vulnerability Source: MISC Type: UNKNOWN http://www.zerodayinitiative.com/advisories/ZDI-09-085/ Source: XF Type: UNKNOWN operations-manager-servlet-code-execution(54361) Source: XF Type: UNKNOWN operations-manager-unspecified-sec-bypass(54361) Source: EXPLOIT-DB Type: EXPLOIT Offensive Security Exploit Database [12-14-2010] Source: CCN Type: Rapid7 Vulnerability and Exploit Database Tomcat Application Manager Login Utility Source: CCN Type: ZDI-09-085 Hewlett-Packard Operations Manager Server Backdoor Account Code Execution Vulnerability | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |