Check Point Advisories

SolarWinds Storage Manager AuthenticationFilter Authentication Bypass

Check Point Reference: CPAI-2014-1842
Date Published: 14 Oct 2014
Severity: Critical
Last Updated: Tuesday 14 October, 2014
Source:
Protection Provided by:

Security Gateway
R77

  • R76
  • R75

  • Who is Vulnerable?
    SolarWinds Storage Manager 5.7.2 and prior

    Vulnerability Description An authentication bypass vulnerability exists in SolarWinds Storage Manager. The vulnerability is due to a flaw within the AuthenticationFilter class. A remote unauthenticated attacker could exploit this vulnerability by bypassing the authentication filter and uploading malicious scripts to the target. Successful exploitation could result in code execution under the context of the system.

    Protection Overview

    Security Gateway R77 / R76 / R75 / R71 / R70

    1. In the IPS tab, click Protections and find the SolarWinds Storage Manager AuthenticationFilter Authentication Bypass protection using the Search tool and Edit the protection's settings.
    2. Install policy on all modules.

    SmartView Tracker will log the following entries:

    Attack Name: Web Server Enforcement Violation.
    Attack Information: SolarWinds Storage Manager AuthenticationFilter Authentication Bypass

    ×
      Feedback
    This website uses cookies for its functionality and for analytics and marketing purposes. By continuing to use this website, you agree to the use of cookies. For more information, please read our Cookies Notice.
    OK