Solarwinds LEM 6.3.1 Management Shell Arbitrary File Read
Posted by deepcore on April 25, 2017 – 7:29 am
The management shell on Solarwinds Log and Event Manager Virtual Appliance version 6.3.1 allows the end user to edit the MOTD banner displayed during SSH logon. The editor provided for this is nano. This editor has a keyboard mapped function which lets the user import a file from the local file system into the editor. An attacker can abuse this to read arbitrary files within the allowed permissions.
Post a reply
You must be logged in to post a comment.