ET SCAN JAWS Webserver Unauthenticated Shell Command Execution
Sourceet/open
CreatedMay 4, 2020
UpdatedMay 4, 2020
Classificationweb-application-attack
alert http $EXTERNAL_NET any -> any any (msg:"ET SCAN JAWS Webserver Unauthenticated Shell Command Execution"; flow:established,to_server; http.method; content:"GET"; http.uri.raw; content:"/shell?cd+/tmp|3b|rm+-rf+*|3b|wget+"; depth:29; fast_pattern; reference:md5,fea9e4132fc9d30bda5eb6b1d9d0b9b9; classtype:web-application-attack; sid:2030093; rev:2; metadata:affected_product Linux, attack_target Web_Server, created_at 2020_05_04, deployment Perimeter, confidence Low, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2020_05_04;)
References
| md5 | fea9e4132fc9d30bda5eb6b1d9d0b9b9 |
Metadata
affected productLinux
attack targetWeb_Server
created at2020_05_04
deploymentPerimeter
confidenceLow
signature severityMajor
tagDescription_Generated_By_Proofpoint_Nexus
updated at2020_05_04
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!