SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP Microsoft SharePoint OAuth authentication bypass attempt
This rule looks for attempts to exploit an authentication bypass vulnerability in Microsoft SharePoint.
This rule looks for attempts to exploit an authentication bypass vulnerability in Microsoft SharePoint.
Public information/Proof of Concept available
No known false positives
Cisco Talos Intelligence Group
MITRE::ATT&CK Framework::Enterprise::Initial Access::Exploit Public-Facing Application
MITRE::ATT&CK Framework::Enterprise::Privilege Escalation::Exploitation for Privilege Escalation
Vulnerability::Severity::Critical
Vulnerability::Severity::High
Authentication Bypass
An Authentication Bypass occurs when there is a way to avoid providing user credentials to a system before performing restricted operations on said system.
CVE-2023-29357 |
Loading description
|