SCAN: Post Query Probe

This signature detects access to the post-query CGI script, a common target of vulnerability scans.

Extended Description

NCSA Post-query is prone to a remotely exploitable buffer overflow condition. This is due to insufficient bounds checking when handling HTTP POST requests. It is possible for remote attackers to corrupt sensitive regions of memory with attacker-supplied values, possibly resulting in execution of arbitrary code.

Affected Products

Ncsa post-query

References

CVE: CVE-2001-0291

Short Name
SCAN:MISC:HTTP:POST-QUERY-PROBE
Severity
Info
Recommended
False
Recommended Action
None
Category
SCAN
Keywords
CVE-2001-0291 Post Probe Query
Release Date
04/22/2003
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Rarely
Vendors

Ncsa

CVSS Score

10.0

Found a potential security threat?