HTTP: Illegal Characters in Host Header Field
This signature detects illegal characters in a Host header field of an HTTP/1.1 request. Attackers can send an HTTP link, that, when selected by the user, generates an HTTP request to a malicious Web site. In your logs, the destination IP address for the event can be the malicious Web site; however, some foreign Web sites can also trigger this signature, creating a false positive.
Extended Description
Illegal characters in the host header field in an HTTP response could indicate an attempted attack.
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
6.5
5.0