SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP Microsoft SharePoint Server authenticated remote code execution attempt
This rule detects attempts to exploit a SharePoint Server remote code execution vulnerability, aka CVE-2021-3446.
This rule detects attempts to exploit a SharePoint Server remote code execution vulnerability, aka CVE-2021-3446.
No public information
No known false positives
Cisco Talos Intelligence Group
No rule groups
Information Leak
Information Leakage happens when an attacker manipulates a system into revealing sensitive information, either through malformed input or by taking advantage of another feature of the system.
CVE-2021-34467 |
Loading description
|
CVE-2021-3446 |
Loading description
|
Tactic: Initial Access
Technique: Exploit Public-Facing Application
For reference, see the MITRE ATT&CK vulnerability types here: https://attack.mitre.org