|
|
|
Vulnerability Note VU#5053Older Versions of Cisco PIX Firewall Manager permits retrieval of filesOverviewA vulnerability in versions of the Cisco PIX Firewall Manager (PFM) in use circa September 1998 allows intruders to retrieve files from the host running PFM.I. DescriptionA vulnerability in the Cisco PIx FIrewall manager allows an intruder to retrieve files from the host running PFM. In typical configurations, the intruder would have to be inside the firewall. Quoting from Cisco Security Notice: Field Notice PIX Firewall Manager File Exposure
The use of the PIX Device Manager is preferred to the use of PFM. II. ImpactIf prerequisites are met, attackers can retrieve any file orfiles on the NT host on which PFM is installed, as well as any file or files on network servers accessible through that host's file system.III. SolutionUse the PIX Device Manager instead of the PIX Firewall Manager (PFM). If that is not possible, upgrade to a version of PFM later than 4.2(1), or the latest version.
References
Our thanks to Cisco for the information in their field notice. This document was written by Shawn V Hernan.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
||||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||