App: Schneider SQLI Remote Code Execution

This signature detects an attempt to exploit an SQL Command Injection vulnerability in Schneider SCADA based application. Successful exploitation could allow an attacker to bypass authentications and thus launch further attacks into the context of the running application.

Short Name
APP:MISC:SCHNEIDER-SQLI-RCE
Severity
Major
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
Code Execution Remote SQLI Schneider
Release Date
02/02/2015
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
Port
TCP/2536,2537
False Positive
Unknown

Found a potential security threat?