Cisco Prime Data Center Network Manager File Upload RCE (cisco-sa-20180502-prime-upload)
Critical Nessus Plugin ID 110518
SynopsisA network management system running on the remote host is affected by a remote code execution vulnerability.
DescriptionThe Cisco Prime Data Center Network Manager (DCNM) running on the remote host is affected by a remote code execution vulnerability due to improper input validation of the parameters in an HTTP request processed by the XmpFileUploadServlet servlet. An unauthenticated, remote attacker can exploit this issue, via a specially crafted HTTP request, to upload a Java Server Pages (JSP) file to a specific folder using path traversal techniques and then execute that file remotely. An exploit could allow the attacker to execute arbitrary commands on the affected device with the privileges of the SYSTEM user
SolutionUpgrade to Cisco Prime Data Center Network Manager version 10.3(1) or later.