Vulnerabilities > CVE-2011-4404 - Configuration vulnerability in VMWare Vcenter Update Manager 4.0/4.1
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
The default configuration of the HTTP server in Jetty in vSphere Update Manager in VMware vCenter Update Manager 4.0 before Update 4 and 4.1 before Update 2 allows remote attackers to conduct directory traversal attacks and read arbitrary files via unspecified vectors, a related issue to CVE-2009-1523.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 6 |
Common Weakness Enumeration (CWE)
Exploit-Db
description | VMware Update Manager Directory Traversal. CVE-2009-1523,CVE-2011-4404. Remote exploit for windows platform |
id | EDB-ID:18138 |
last seen | 2016-02-02 |
modified | 2011-11-21 |
published | 2011-11-21 |
reporter | Alexey Sintsov |
source | https://www.exploit-db.com/download/18138/ |
title | VMware Update Manager Directory Traversal |
Metasploit
description | This modules exploits a directory traversal vulnerability in VMWare Update Manager on port 9084. Versions affected by this vulnerability: vCenter Update Manager 4.1 prior to Update 2, vCenter Update Manager 4 Update 4. |
id | MSF:AUXILIARY/SCANNER/VMWARE/VMWARE_UPDATE_MANAGER_TRAVERSAL |
last seen | 2020-06-04 |
modified | 2017-07-24 |
published | 2015-06-08 |
references | |
reporter | Rapid7 |
source | https://github.com/rapid7/metasploit-framework/blob/master//modules/auxiliary/scanner/vmware/vmware_update_manager_traversal.rb |
title | VMWare Update Manager 4 Directory Traversal |
Nessus
NASL family | CGI abuses |
NASL id | VMWARE_VCENTER_UPDATE_MGR_VMSA-2011-0014.NASL |
description | The version of Jetty web server included with VMware vCenter Update Manager on the remote host has a directory traversal vulnerability. This is a variant of the issue previously addressed by VMware advisory VMSA-2010-0012. The web server runs as SYSTEM by default. A remote, unauthenticated attacker could exploit this to read arbitrary files from the host. |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 56958 |
published | 2011-11-28 |
reporter | This script is Copyright (C) 2011-2019 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/56958 |
title | VMware vCenter Update Manager Directory Traversal (VMSA-2011-0014) |
code |
|
Packetstorm
data source | https://packetstormsecurity.com/files/download/107176/DSECRG-11-042.txt |
id | PACKETSTORM:107176 |
last seen | 2016-12-05 |
published | 2011-11-21 |
reporter | Alexey Sintsov |
source | https://packetstormsecurity.com/files/107176/VMware-Update-Manager-Directory-Traversal.html |
title | VMware Update Manager Directory Traversal |
Seebug
bulletinFamily | exploit |
description | BUGTRAQ ID: 50723 CVE ID: CVE-2011-4404 Jetty是一款流行的Java Web服务器。 Jetty Web Server在实现上存在不明细节目录遍历漏洞,可使攻击者查看Web服务器中的任意文件,造成信息泄露 VMWare vCenter Update Manager 4.1 VMWare vCenter Update Manager 4.0 Jetty Jetty Web Server 厂商补丁: Jetty ----- 目前厂商还没有提供补丁或者升级程序,我们建议使用此软件的用户随时关注厂商的主页以获取最新版本: http://jetty.mortbay.org/jetty/index.html |
id | SSV:24231 |
last seen | 2017-11-19 |
modified | 2011-11-21 |
published | 2011-11-21 |
reporter | Root |
title | Jetty Web Server不明细节目录遍历漏洞 |
References
- http://jetty.codehaus.org/jetty/jetty-6/xref/org/mortbay/jetty/handler/ResourceHandler.html
- http://jetty.codehaus.org/jetty/jetty-6/xref/org/mortbay/jetty/servlet/DefaultServlet.html
- http://www.securitytracker.com/id?1026341
- http://www.vmware.com/security/advisories/VMSA-2011-0014.html
- http://jetty.codehaus.org/jetty/jetty-6/xref/org/mortbay/jetty/handler/ResourceHandler.html
- http://www.vmware.com/security/advisories/VMSA-2011-0014.html
- http://www.securitytracker.com/id?1026341
- http://jetty.codehaus.org/jetty/jetty-6/xref/org/mortbay/jetty/servlet/DefaultServlet.html