ATTACK [PTsecurity] Exim Blind SQL Injection attempt (CVE-2025-26794)
Sourceptrules/open
CreatedJuly 24, 2025
UpdatedJuly 24, 2025
Classificationattempted-admin
alert tcp any any -> any 25 (msg:"ATTACK [PTsecurity] Exim Blind SQL Injection attempt (CVE-2025-26794)"; flow:established, to_server; content:"ETRN #"; depth:6; pcre:"/^[^\x0d]*?(?:\x27|\x22|\x3b|\x60|--)/R"; reference:url, github.com/OscarBataille/CVE-2025-26794; reference:cve, 2025-26794; reference:url, rules.ptsecurity.com; classtype:attempted-admin; sid:10013517; rev:1;)
References
Comments (0)
Please sign in to leave a comment.
Sign inNo comments yet. Be the first to comment!