Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

APP:HP-PWR-MGR-DIR-TRAV

Severity

Critical

Recommended

No

Recommended Action

Drop

Category

APP

Keywords

HP Power Manager formExportDataLogs Directory Traversal

Release Date

2010/09/27

Update Number

1780

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

APP: HP Power Manager formExportDataLogs Directory Traversal


This signature detects attempts to exploit a known vulnerability in the HP Power Manager UPS management system. It is due to an input validation error while processing parameters sent to the formExportDataLogs form of the Web based management Web server. Remote unauthenticated attackers can exploit this to overwrite arbitrary files with attacker-controlled data on the target system by sending malicious HTTP requests. Successful exploitation can lead to injection and execution of arbitrary code on the target system within the security context of SYSTEM.

Extended Description

HP Power Manager is prone to a remote code-execution vulnerability because it fails to properly bounds-check user-supplied data. An attacker can exploit this issue to execute arbitrary code with SYSTEM privileges, resulting in a complete compromise of the affected computer. Failed exploit attempts will result in a denial-of-service condition. NOTE: This BID initially referenced CVE-2009-3999 and CVE-2009-4000. These issues are now described in BID 37867 (CVE-2009-3999) and BID 37873 (CVE-2009-4000). Versions prior to Power Manager 4.2.10 are affected.

Affected Products

  • HP Power Manager 4.0Build10
  • HP Power Manager 4.0Build11
  • HP Power Manager 4.2.7
  • HP Power Manager 4.2.9
  • HP Power Manager

References

  • BugTraq: 37866
  • CVE: CVE-2009-4000
  • URL: http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01971741

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out