vendor:
DCNM
by:
Harrison Neal
6.3
CVSS
MEDIUM
Credential Leakage
287
CWE
Product Name: DCNM
Affected Version From: 10.4(2)
Affected Version To: 10.4(2)
Patch Exists: YES
Related CWE: CVE-2019-15999
CPE: a:cisco:dcnm:10.4:2
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: None
2020
Cisco DCNM JBoss 10.4 – Credential Leakage
This exploit allows an attacker to gain access to credentials stored in Cisco DCNM JBoss 10.4. The attacker needs to have a few .jars from a copy of Cisco DCNM to compile and run this code. The attacker can then use the code to access the credentials stored in the system. The code can be compiled by matching the file path ${package}/${class}.java, e.g., com/whatdidibreak/dcnm_expl/Main.java. The attacker can then use the command java -jar PackagedJarFile Victim1IpOrFqdn [victim2 ...] to gain access to the credentials.
Mitigation:
The user should ensure that the system is updated with the latest security patches and should use strong passwords to protect the system.