HTTP: Generic Format String in Url

This signature detects attempts to exploit an http server using common format strings. Attackers may gain complete control of the target host.

Extended Description

Sun Microsystems AnswerBook2 allows users to view Sun documentation through a web browser, and is available for Solaris. AnswerBook2 includes an administrative web interface. Reportedly, it is possible to access these scripts without authorization, and add a new administrative user of the AnswerBook2 system.

Affected Products

Sun answerbook2

Short Name
HTTP:AUDIT:GENERIC-FMT-STR
Severity
Minor
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
CVE-1999-1417 CVE-2009-0993 Format Generic String Url bid:34461 bid:5383 in
Release Date
03/09/2005
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Frequently
Vendors

Sun

CVSS Score

7.5

Found a potential security threat?