SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP WordPress WP Time Capsule arbitrary PHP file upload attempt
This rule looks for the PHP file magic ("") included in the client body of HTTP requests sent to the /wordpress/wp-content/plugins/wp-time-capsule/wp-tcapsule-bridge/upload/php/index.php endpoint on WordPress WP Time Capsule web applications.
This rule looks for attempts to exploit a PHP file upload vulnerability in WordPress WP Time Capsule web applications.
No public information
No known false positives
Cisco Talos Intelligence Group
Rule Categories::Server::Web Applications
MITRE::ATT&CK Framework::Enterprise::Initial Access::Exploit Public-Facing Application
N/A
Not Applicable
CVE-2024-8856 |
Loading description
|