HTTP: HTTPd Logfile PHP Command Insertion

This signature detects attempts to exploit a known vulnerability in the HTTPd Logfile. Attackers can append PHP code to the end of a HTTP file request to present the code in the logfile. The attacker can then use another method to execute the logfile and execute arbitrary commands on the host.

Short Name
HTTP:PHP:LOG-INSERT
Severity
Warning
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
Command HTTPd Insertion Logfile PHP
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown

Found a potential security threat?