ManageEngine NetFlow Analyzer CVE-2014-9373 Remote Code Execution Vulnerability
BID:71640
Info
ManageEngine NetFlow Analyzer CVE-2014-9373 Remote Code Execution Vulnerability
| Bugtraq ID: | 71640 |
| Class: | Input Validation Error |
| CVE: |
CVE-2014-9373 |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 11 2014 12:00AM |
| Updated: | Dec 11 2014 12:00AM |
| Credit: | Andrea Micalizzi (rgod) |
| Vulnerable: |
ManageEngine NetFlow Analyzer 0 |
| Not Vulnerable: | |
Discussion
ManageEngine NetFlow Analyzer CVE-2014-9373 Remote Code Execution Vulnerability
ManageEngine NetFlow Analyzer is prone to a remote code-execution vulnerability.
Successful exploits will allow attackers to execute arbitrary code in the context of the affected system.
ManageEngine NetFlow Analyzer is prone to a remote code-execution vulnerability.
Successful exploits will allow attackers to execute arbitrary code in the context of the affected system.
Solution / Fix
ManageEngine NetFlow Analyzer CVE-2014-9373 Remote Code Execution Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
ManageEngine NetFlow Analyzer CVE-2014-9373 Remote Code Execution Vulnerability
References:
References:
- NetFlow Analyzer Homepage (ManageEngine NetFlow Analyzer)
- ManageEngine NetFlow Analyzer CollectorConfInfoServlet COLLECTOR_ID Directory Tr (TippingPoint Zero Day Initiative)