⭐ 欢迎来到虫虫下载站! | 📦 资源下载 📁 资源专辑 ℹ️ 关于我们
⭐ 虫虫下载站

📄 2570.txt

📁 snort入侵检测规则文件2.4 Snort是众所周知的网络入侵检测工具
💻 TXT
字号:
Rule:--Sid:2570--Summary:This event is generated when an attempt is made to exploit a known vulnerability on a web server or a web application resident on a webserver.--Impact:Information gathering and system integrity compromise. Possible unauthorizedadministrative access to the server. Possible execution of arbitrary code of the attackers choosing in some cases.--Detailed Information:This event is generated when an attempt is made to compromise a hostrunning a Web server or a vulnerable application on a web server.In particular this rule generates events when a non-standard HTTPrequest is made to a server. Some applications do not handle thisexception in an acceptable manner and may present an attacker with theopportunity to exploit the application and server becasue of this.Some applications do not perform stringent checks when validating thecredentials of a client host connecting to the services offered on ahost server. This can lead to unauthorized access and possibly escalatedprivileges to that of the administrator. Data stored on the machine canbe compromised and trust relationships between the victim server and other hosts can be exploited by the attacker.--Affected Systems:	All systems using a web server.	Seattle Lab Software SLMail Pro 2.0 to 2.0.9 inclusive--Attack Scenarios:Many attack vectors are possible from simple directory traversal toexploitation of buffer overflow conditions.--Ease of Attack:Simple. Exploits exist.--False Positives:The use of some proxy servers like Inktomi, may cause this rule togenerate events.--False Negatives:None known.--Corrective Action:Ensure the system is using an up to date version of the software and hashad all vendor supplied patches applied.Check the host logfiles and application logs for signs of compromise.--Contributors:Sourcefire Research TeamBrian Caswell <bmc@sourcefire.com>Nigel Houghton <nigel.houghton@sourcefire.com>--Additional References:--

⌨️ 快捷键说明

复制代码 Ctrl + C
搜索代码 Ctrl + F
全屏模式 F11
切换主题 Ctrl + Shift + D
显示快捷键 ?
增大字号 Ctrl + =
减小字号 Ctrl + -