ATTACK [PTsecurity] MySQL <= 5.7.15, 5.6.33, 5.5.53 root RCE/Privilege Escalation attempt
Sourceptresearch/attackdetection
CreatedDecember 13, 2021
UpdatedDecember 13, 2021
Classificationattempted-admin
alert tcp any any -> $HOME_NET any (msg:"ATTACK [PTsecurity] MySQL <= 5.7.15, 5.6.33, 5.5.53 root RCE/Privilege Escalation attempt"; content:"|03|"; offset:4; depth:1; content:"736574"; distance:0; content:"6c6f675f66696c65"; distance:0; content:"6d79"; distance:0; content:"2e636e66"; distance:0; within:14; reference:url, legalhackers.com/advisories/MySQL-Exploit-Remote-Root-Code-Execution-Privesc-CVE-2016-6662.html; reference:cve, 2016-6662; classtype:attempted-admin; reference:url, github.com/ptresearch/AttackDetection; sid:10000128; rev:1;)
References
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!