Back to Rule

Rule History

SID: 2025739 • Source: et/open

Versions (2)

Version DetailsCurrent

Rev: 1Jun 25, 2018, 12:00 PM

ET EXPLOIT Intex Router N-150 Cross-Site Request Forgery

alert http $EXTERNAL_NET any -> $HOME_NET any (msg:"ET EXPLOIT Intex Router N-150 Cross-Site Request Forgery"; flow:from_server,established; file_data; content:"method"; nocase; content:"POST"; content:"PPW"; content:"submit"; content:"SSID"; content:"isp"; content:"WAN"; content:"wirelesspassword"; fast_pattern; content:"name"; content:"value"; classtype:web-application-attack; sid:2025739; rev:1; metadata:attack_target Client_Endpoint, created_at 2018_06_25, deployment Perimeter, performance_impact Low, signature_severity Major, updated_at 2019_07_26;)

Jun 25, 2018, 12:00 PM

Jul 26, 2019, 12:00 PM

Jun 25, 2018, 12:00 PM

May 31, 2024, 9:00 PM

rules/emerging-exploit.rules