HTTP: Trend Micro Command Injection In HTTP Variables

The signature is trying to capture any command injection vulnerabilites present in http parameters. Successful exploitation by remote use could lead to arbitrary command execution under the security context of the root user.

Short Name
HTTP:MISC:TRENDMICRO-CMD-INJ
Severity
Critical
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
Command HTTP In Injection Micro Trend Variables
Release Date
09/12/2017
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3324
False Positive
Unknown

Found a potential security threat?