Record summary

CVE-2017-11512 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.

Description

The ManageEngine ServiceDesk 9.3.9328 is vulnerable to arbitrary file downloads due to improper restrictions of the pathname used in the name parameter for the download-snapshot URL. An unauthenticated remote attacker can use this vulnerability to download arbitrary files.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Jan 12, 2022 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

Affected products and versions

2
ProductSourceVersion rangeStatus
CVE List9.3.9328affected
VulnCheckVersion data not supplied

Nuclei templates

1
ProjectDiscoveryHIGHManageEngine ServiceDesk 9.3.9328 - Arbitrary File RetrievalCVSS 7.5

ManageEngine ServiceDesk 9.3.9328 is vulnerable to an arbitrary file retrieval due to improper restrictions of the pathname used in the name parameter for the download-snapshot path. An unauthenticated remote attacker can use this vulnerability to download arbitrary files.

Impact

An attacker can access sensitive files on the server, potentially leading to unauthorized access or data leakage.

Remediation

Upgrade to a patched version of ManageEngine ServiceDesk 9.3.9328 or apply the necessary security patches.

WeaknessesCWE-22
Authors0x_Akoko
Template tagscvecve2017manageenginelfrunauthtenablevkevvuln
CVSS vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CPE: cpe:2.3:a:manageengine:servicedesk:9.3.9328:*:*:*:*:*:*:*
Shodan: http.title:"ManageEngine"
Shodan: http.title:"manageengine"
FOFA: title="manageengine"
Google: intitle:"manageengine"

Source: ProjectDiscovery

References

3