LANDesk.Management.Suite.Remote.File.Inclusion

description-logoDescription

This indicates an attack attempt against a remote File Inclusion vulnerability in LANDesk Management Suite.
The vulnerability is due to insufficient validation of user supplied data. A remote attacker can exploit this by tricking an unsuspecting user into visiting a malicious webpage and execute arbitrary script code within context of the target users' browser.

affected-products-logoAffected Products

LANDesk Management Suite prior to 9.6

Impact logoImpact

System Compromise: Remote attackers can execute arbitrary script code within the context of the target user's browser

recomended-action-logoRecommended Actions

Currently we are unaware of any vendor supplied patch for this issue

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2019-06-07 14.628 Severity:medium:high