ET WEB_SERVER ImageMagick CVE-2016-3718 SSRF Inbound (mvg + fill + url)

SID: 2022791Rev: 50 views
History
Sourceet/open
CreatedMay 4, 2016
UpdatedOctober 6, 2020
Classificationweb-application-attack
alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SERVER ImageMagick CVE-2016-3718 SSRF Inbound (mvg + fill + url)"; flow:established,to_server; http.request_body; content:"viewbox|20|"; nocase; fast_pattern; content:"fill"; content:"url("; distance:0; nocase; pcre:"/^\s*https?\x3a\/\//Ri"; classtype:web-application-attack; sid:2022791; rev:5; metadata:created_at 2016_05_04, cve CVE_2016_3718, signature_severity Major, tag CISA_KEV, updated_at 2020_10_06;)

Metadata

created at2016_05_04
signature severityMajor
tagCISA_KEV
updated at2020_10_06

Comments (0)

Please sign in to leave a comment.
Sign in

No comments yet. Be the first to comment!