HTTP: Opensis Modname Parameter Remote PHP Code Injection
This signature detects attempts to exploit a known vulnerability against Opensis. A successful exploit can lead to remote php code injection.
Extended Description
Eval injection vulnerability in ajax.php in openSIS 4.5 through 5.2 allows remote attackers to execute arbitrary PHP code via the modname parameter.
Affected Products
Os4ed opensis
References
CVE: CVE-2013-1349
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Os4ed
7.5