1484.txt

来自「snort入侵检测规则文件2.4 Snort是众所周知的网络入侵检测工具」· 文本 代码 · 共 59 行

TXT
59
字号
Rule:--Sid:1484--Summary:This event is generated when an attempt is made to access the tstisapi.dll component associated with the Pi3Web software. --Impact:Remote access.  Malicious access of the tstisapi.dll component can allow the execution of arbitrary commands on a vulnerable server.--Detailed Information:Pi3Web is a free configurable HTTP server available on Linux and Windows for cross platform Internet server development and deployment.  A buffer overflow vulnerability exists in tstisapi.dll that may permit execution of arbitrary commands on the victim server.--Affected Systems:Pi3Web 2.0--Attack Scenarios:An attacker can craft an overly long request for tstisapi.dll that may cause a buffer overflow.--Ease of Attack:Simple.  Exploit code is freely available.--False Positives:None Known.--False Negatives:None Known.--Corrective Action:Apply the vendor patch.--Contributors:Original rule written by Brian Caswell <bmc@sourcefire.com>Sourcefire Research TeamJudy Novak <judy.novak@sourcefire.com>--Additional References:CVEhttp://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2002-0142Bugtraqhttp://www.securityfocus.com/bid/3866--

⌨️ 快捷键说明

复制代码Ctrl + C
搜索代码Ctrl + F
全屏模式F11
增大字号Ctrl + =
减小字号Ctrl + -
显示快捷键?