alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC Five Dollar Scripts Drinks Script recid parameter SQL Injection"; flow:established,to_server; content:"GET "; depth:4; uricontent:"/index.php?"; nocase; uricontent:"cmd=6"; nocase; uricontent:"recid="; nocase; uricontent:"UNION"; nocase; uricontent:"SELECT"; nocase; pcre:"/UNION.+SELECT/Ui"; classtype:web-application-attack; reference:url,secunia.com/Advisories/32579/; reference:url,www.milw0rm.com/exploits/7007; sid:2008836; rev:1;)
Added 2008-12-02 10:00:23 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC Five Dollar Scripts Drinks Script recid parameter SQL Injection"; flow:established,to_server; content:"GET "; depth:4; uricontent:"/index.php?"; nocase; uricontent:"cmd=6"; nocase; uricontent:"recid="; nocase; uricontent:"UNION"; nocase; uricontent:"SELECT"; nocase; pcre:"/UNION.+SELECT/Ui"; classtype:web-application-attack; reference:url,secunia.com/Advisories/32579/; reference:url,www.milw0rm.com/exploits/7007; sid:2008836; rev:1;)
Added 2008-12-02 09:58:24 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC Five Dollar Scripts Drinks Script recid parameter SQL Injection"; flow:established,to_server; content:"GET "; depth:4; uricontent:"/index.php?"; nocase; uricontent:"cmd=6"; nocase; uricontent:"recid="; nocase; uricontent:"UNION"; nocase; uricontent:"SELECT"; nocase; pcre:"/UNION.+SELECT/Ui"; classtype:web-application-attack; reference:url,secunia.com/Advisories/32579/; reference:url,www.milw0rm.com/exploits/7007; sid:2008836; rev:1;)
Added 2008-12-02 09:57:12 UTC