SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP Samsung SRN-1670D cslog_export.php arbitrary file read attempt
This event is generated when an attacker attempts to exploit an arbitrary file read vulnerability in Samsung SRN-1670D network video recorders. Impact: Attempted Information Leak Details: Ease of Attack:
No public information
No known false positives
Cisco Talos Intelligence Group
Tactic:
Technique:
For reference, see the MITRE ATT&CK vulnerability types here: https://attack.mitre.org
CVE-2015-8279Web Viewer 1.0.0.193 on Samsung SRN-1670D devices allows remote attackers to read arbitrary files via a request to an unspecified PHP script. |
|