⭐ 欢迎来到虫虫下载站! | 📦 资源下载 📁 资源专辑 ℹ️ 关于我们
⭐ 虫虫下载站

📄 908.txt

📁 snort入侵检测规则文件2.4 Snort是众所周知的网络入侵检测工具
💻 TXT
字号:
Rule:--Sid:908--Summary:This event is generated when an attempt is made to access the administrator screens for Coldfusion server.  A long password can cause a Denial-of-Service.--Impact:Denial of Service (DoS). While the risk as a target for password attacks is minor, the administrator login mechanism can be jammed by long passwords, leading to a DoS for the server.--Detailed Information:ColdFusion's administrator interface is reachable via:http://www.target.com/CFIDE/administrator/index.cfmIt is recommended that access to these pages be restricted to trusted IP addresses to prevent them being targets for password attacks.Further, long passwords create a Denial-of-Service state in the server temporarily.See Macromedia Security Bulletin (MPSB01-08) for complete information.--Affected Systems:ColdFusion versions 4.x for Windows, Solaris, HP-UX, Linux--Attack Scenarios:The attacker can access the administration interface for the server and gain control of the application.--Ease of Attack:Simple.--False Positives:None known--False Negatives:None known--Corrective Action:At minimum, restrict access to the administrator mechanism from within the ColdFusion administrator screens.  Only internal, trusted users should be allowed access.  For further protections, use the security capabilities of the webserver or the OS to restrict access to the CFIDE/administrator directory when not needed, or copy/remove the CFIDE/administrator directory completely off the server when not in use (it will be necessary to reload the directory before accessing admin functions, of course).http://www.macromedia.com/support/coldfusion/ts/documents/tn17254.htm--Contributors:Original Rule Writer UnknownSourcefire Research TeamNigel Houghton <nigel.houghton@sourcefire.com>Snort documentation contributed by Darryl Davidson <ddavidson@talisman-intl.com>-- Additional References:Allaire Security Bulletin (ASB00-14)http://www.macromedia.com/devnet/security/security_zone/asb00-14.htmlCVE-2000-0538http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2000-0538--

⌨️ 快捷键说明

复制代码 Ctrl + C
搜索代码 Ctrl + F
全屏模式 F11
切换主题 Ctrl + Shift + D
显示快捷键 ?
增大字号 Ctrl + =
减小字号 Ctrl + -