#alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC_APPS WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; content:"/index.php?"; http_uri; nocase; content:"e_id="; http_uri; nocase; content:"SELECT"; http_uri; nocase; pcre:"/SELECT.+FROM/Ui"; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; classtype:web-application-attack; sid:2004313; rev:6; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, signature_severity Major, tag SQL_Injection, updated_at 2016_07_01;)
Added 2020-08-05 19:02:20 UTC
#alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC_APPS WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; content:"/index.php?"; http_uri; nocase; content:"e_id="; http_uri; nocase; content:"SELECT"; http_uri; nocase; pcre:"/SELECT.+FROM/Ui"; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; classtype:web-application-attack; sid:2004313; rev:6; metadata:affected_product Web_Server_Applications, attack_target Web_Server, deployment Datacenter, tag SQL_Injection, signature_severity Major, created_at 2010_07_30, updated_at 2016_07_01;)
Added 2017-12-12 16:47:01 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC_APPS WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; content:"/index.php?"; http_uri; nocase; content:"e_id="; http_uri; nocase; content:"SELECT"; http_uri; nocase; pcre:"/SELECT.+FROM/Ui"; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; classtype:web-application-attack; sid:2004313; rev:6; metadata:affected_product Web_Server_Applications, attack_target Web_Server, deployment Datacenter, tag SQL_Injection, signature_severity Major, created_at 2010_07_30, updated_at 2016_07_01;)
Added 2017-08-07 20:57:31 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC_APPS WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; content:"/index.php?"; http_uri; nocase; content:"e_id="; http_uri; nocase; content:"SELECT"; http_uri; nocase; pcre:"/SELECT.+FROM/Ui"; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; classtype:web-application-attack; sid:2004313; rev:6;)
Added 2011-10-12 19:15:23 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC_APPS WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; content:"/index.php?"; http_uri; nocase; content:"e_id="; http_uri; nocase; content:"SELECT"; http_uri; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; sid:2004313; rev:6;)
Added 2011-09-14 22:28:34 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC_APPS WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; content:"/index.php?"; http_uri; nocase; content:"e_id="; http_uri; nocase; content:"SELECT"; http_uri; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SPECIFIC_APPS/WEB_WBBlog; sid:2004313; rev:6;)
Added 2011-02-04 17:23:14 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC_APPS WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SPECIFIC_APPS/WEB_WBBlog; sid:2004313; rev:5;)
Added 2009-10-06 14:39:48 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC_APPS WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SPECIFIC_APPS/WEB_WBBlog; sid:2004313; rev:5;)
Added 2009-10-06 14:39:48 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SPECIFIC_APPS/WEB_WBBlog; sid:2004313; rev:5;)
Added 2009-10-06 14:20:20 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SPECIFIC_APPS/WEB_WBBlog; sid:2004313; rev:5;)
Added 2009-10-06 14:20:20 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SPECIFIC_APPS/WEB_WBBlog; sid:2004313; rev:5;)
Added 2009-10-06 14:16:57 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SPECIFIC_APPS/WEB_WBBlog; sid:2004313; rev:5;)
Added 2009-10-06 14:16:57 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SQL_INJECTION/WEB_WBBlog; sid:2004313; rev:4;)
Added 2009-02-26 20:31:41 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SQL_INJECTION/WEB_WBBlog; sid:2004313; rev:4;)
Added 2009-02-26 20:31:41 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SQL_INJECTION/WEB_WBBlog; sid:2004313; rev:4;)
Added 2009-02-26 20:30:29 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; reference:url,doc.emergingthreats.net/2004313; reference:url,www.emergingthreats.net/cgi-bin/cvsweb.cgi/sigs/WEB_SQL_INJECTION/WEB_WBBlog; sid:2004313; rev:4;)
Added 2009-02-26 20:30:29 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:3;)
Added 2008-02-01 10:47:03 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"ET WEB_SPECIFIC WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:3;)
Added 2008-02-01 10:47:02 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-29 09:47:39 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-29 05:17:01 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-29 04:04:32 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-29 03:49:04 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-27 12:56:00 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-27 10:32:52 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-27 05:35:19 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-27 05:09:41 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-27 04:39:25 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-27 03:48:55 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-27 02:40:36 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-26 23:05:54 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-25 14:27:57 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-25 01:35:20 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-25 00:52:24 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-24 23:48:34 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-24 16:04:28 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-24 14:40:05 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-24 03:17:12 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-24 02:57:39 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-23 08:46:34 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-22 23:04:54 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-22 22:47:28 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-22 12:04:41 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-21 22:06:14 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-21 00:31:05 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-20 10:04:36 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-20 04:17:20 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-19 22:43:33 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-19 20:53:36 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-19 01:37:20 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-19 01:23:30 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-18 11:47:20 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-18 11:40:29 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-18 15:04:04 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-18 02:31:34 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-16 04:19:19 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-15 23:01:52 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-15 07:02:38 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-15 05:07:18 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-15 04:40:15 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-15 03:32:07 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-15 03:20:10 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-15 03:14:44 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-15 02:47:32 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-15 01:31:37 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-15 01:16:20 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-14 23:16:21 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-14 23:02:14 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-14 13:46:22 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-14 03:02:11 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-14 02:56:44 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-14 02:16:32 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-14 02:02:40 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-14 01:38:31 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-14 01:02:14 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-14 00:03:20 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-13 10:35:21 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-13 04:20:30 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; uricontent:"SELECT"; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:2;)
Added 2007-08-13 04:13:55 UTC
alert tcp $EXTERNAL_NET any -> $HTTP_SERVERS $HTTP_PORTS (msg:"BLEEDING-EDGE WEB WBBlog SQL Injection Attempt -- index.php e_id SELECT"; flow:established,to_server; uricontent:"/index.php?"; nocase; uricontent:"e_id="; nocase; pcre:"/SELECT.+FROM/Ui"; classtype:web-application-attack; reference:cve,CVE-2007-1481; reference:url,www.milw0rm.com/exploits/3490; sid:2004313; rev:1;)
Added 2007-06-04 01:20:42 UTC