SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP F5 BIG-IP Traffic Management User Interface remote code execution attempt
This rule looks for a crafted request sent to F5 BIG-IP's Traffic Management User Interface that can trigger remote code execution.
This rule looks for attempts to trigger a remote code execution vulnerability in F5 BIG-IP's Traffic Management User Interface.
No public information
No known false positives
Cisco Talos Intelligence Group
Tactic: Initial Access
Technique: Exploit Public-Facing Application
For reference, see the MITRE ATT&CK vulnerability types here: https://attack.mitre.org
N/A
Not Applicable