ET SCAN Nikto Scan Remote File Include Retrieval

SID: 2011390Rev: 51 views
History
Sourceet/open
CreatedSeptember 28, 2010
UpdatedMay 4, 2020
Classificationweb-application-activity
alert http $HOME_NET any -> $EXTERNAL_NET any (msg:"ET SCAN Nikto Scan Remote File Include Retrieval"; flow:established,to_server; http.uri; content:"/rfiinc.txt"; http.host; content:"cirt.net"; bsize:8; reference:url,cirt.net/nikto2; classtype:web-application-activity; sid:2011390; rev:5; metadata:affected_product Any, attack_target Server, created_at 2010_09_28, deployment Datacenter, confidence Medium, signature_severity Major, tag Remote_File_Include, updated_at 2020_05_04, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_technique_id T1190, mitre_technique_name Exploit_Public_Facing_Application;)

References

Metadata

affected productAny
attack targetServer
created at2010_09_28
deploymentDatacenter
confidenceMedium
signature severityMajor
tagRemote_File_Include
updated at2020_05_04
mitre tactic idTA0001
mitre tactic nameInitial_Access
mitre technique idT1190
mitre technique nameExploit_Public_Facing_Application

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!