FINGER: User "search"
This signature detects attempts to exploit the FINGER service. Attackers can send FINGER search requests to get a report of usernames.
Extended Description
The cfingerd implementation of the Finger daemon allows wild-card queries, which discloses a list of valid usernames. This information could be used by an attacker to facilitate brute-force password cracking, e-mail spoofing or other attacks.
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
5.0