CVE-2019-1619
CRITICALCisco Data Center Network Manager - Unauthenticated Remote Code Execution via Improper Session Management
Title source: llmExploitation Summary
EIP tracks 4 public exploits for CVE-2019-1619.
PoCs published by Cipolone95, including Metasploit module exploits/multi/http/cisco_dcnm_upload_2019.
AI-analyzed exploit summary This repository contains a PowerShell script that automates the generation of a token required to exploit CVE-2019-1619, an authentication bypass vulnerability in Cisco Data Center Network Manager (DCNM). The script constructs a token using a timestamp, session ID, and a hardcoded secret key, which can then be used to bypass authentication.
Description
A vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an unauthenticated, remote attacker to bypass authentication and execute arbitrary actions with administrative privileges on an affected device. The vulnerability is due to improper session management on affected DCNM software. An attacker could exploit this vulnerability by sending a crafted HTTP request to the affected device. A successful exploit could allow the attacker to gain administrative access on the affected device.
Exploits (4)
This repository contains a PowerShell script that automates the generation of a token required to exploit CVE-2019-1619, an authentication bypass vulnerability in Cisco Data Center Network Manager (DCNM). The script constructs a token using a timestamp, session ID, and a hardcoded secret key, which can then be used to bypass authentication.
This Metasploit module exploits CVE-2019-1619, an authentication bypass vulnerability in Cisco Data Center Network Manager (DCNM), to achieve unauthenticated remote code execution by uploading a malicious WAR file to the Apache Tomcat webapps directory. It also leverages CVE-2019-1622 for information disclosure to determine the correct upload path.
This Metasploit module exploits CVE-2019-1619, an authentication bypass vulnerability in Cisco Data Center Network Manager (DCNM), to achieve unauthenticated remote code execution by uploading a malicious WAR file to the Apache Tomcat webapps directory. It also leverages CVE-2019-1622 for information disclosure to determine the correct upload path.
This Metasploit module exploits an unauthenticated file download vulnerability in Cisco Data Center Network Manager (DCNM) by abusing the `/fm/downloadServlet` endpoint to retrieve arbitrary files as root. It includes authentication bypass techniques for versions 10.4(2) and 11.1(1), while version 11.0(1) requires valid credentials.
References (6)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H