Rule Category

SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.

Alert Message

SERVER-WEBAPP SonicWall GMS XML set_time_config command injection attempt

Rule Explanation

This event is generated when XML command injection against SonicWall Global Management System is detected. Impact: Remote code execution Details: Due to improperly sanitized inputs in SonicWall Global Management System, an attacker can inject commands through a simple POST to a vulnerable server. Ease of Attack:

What To Look For

No information provided

Known Usage

No public information

False Positives

No known false positives

Contributors

Cisco Talos Intelligence Group

Rule Groups

No rule groups

CVE

Rule Vulnerability

CVE Additional Information

This product uses data from the NVD API but is not endorsed or certified by the NVD.
CVE-2018-9866
Loading description