Overview
HPE's SiteScope is vulnerable to several cryptographic issues, insufficiently protected credentials, and missing authentication.
Description
HPE's SiteScope is vulnerable to several vulnerabilities. The researcher reports that version 11.31.461 is affected; other versions may also be impacted. CERT/CC has not received further information on affected versions from HPE. CWE-306: Missing Authentication for Critical Function - CVE-2017-8952 |
Impact
An unauthenticated, remote attacker may be able to access arbitrary files from the system running SiteScope, or obtain credentials to SiteScope. |
Solution
Apply an update |
Require TLS/SSL |
Vendor Information
CVSS Metrics
Group | Score | Vector |
---|---|---|
Base | 7.8 | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Temporal | 7 | E:F/RL:W/RC:C |
Environmental | 5.3 | CDP:ND/TD:M/CR:ND/IR:ND/AR:ND |
References
- http://h20566.www2.hpe.com/hpsc/doc/public/display?docId=hpesbgn03763en_us
- http://bytesdarkly.com/disclosures/2017/06/exploiting-hp-sitescope-from-zero-to-compromise.html
- http://www.zerodayinitiative.com/advisories/ZDI-12-176/
- https://www.rapid7.com/db/modules/auxiliary/scanner/http/hp_sitescope_getfileinternal_fileaccess
- http://cwe.mitre.org/data/definitions/306.html
- http://cwe.mitre.org/data/definitions/321.html
- http://cwe.mitre.org/data/definitions/327.html
- http://cwe.mitre.org/data/definitions/522.html
Acknowledgements
Thanks to Richard Kelley for reporting this vulnerability.
This document was written by Garret Wassermann.
Other Information
CVE IDs: | CVE-2017-8952, CVE-2017-8949, CVE-2017-8950, CVE-2017-8951 |
Date Public: | 2017-06-13 |
Date First Published: | 2017-06-13 |
Date Last Updated: | 2017-06-29 18:47 UTC |
Document Revision: | 56 |