.. / CVE-2017-11512

Exploit for ManageEngine ServiceDesk 9.3.9328 - Arbitrary File Retrieval (CVE-2017-11512)

Description:

ManageEngine ServiceDesk 9.3.9328 is vulnerable to an arbitrary file retrieval due to improper restrictions of the pathname used in the name parameter for the download-snapshot path. An unauthenticated remote attacker can use this vulnerability to download arbitrary files.

Nuclei Template

View the template here CVE-2017-11512.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2017/CVE-2017-11512.yaml
Copy

References:

https://nvd.nist.gov/vuln/detail/CVE-2017-11512
https://github.com/ARPSyndicate/cvemon
https://www.tenable.com/security/research/tra-2017-31
https://github.com/ARPSyndicate/kenzer-templates
https://exploit.kitploit.com/2017/11/manageengine-servicedesk-cve-2017-11512.html