alert tcp any any -> $HOME_NET 3306 (msg:"ET EXPLOIT Possible MySQL? cnf overwrite CVE-2016-6662 Attempt"; flow:established,to_server; content:"|03|"; offset:4; content:"global_log_dir"; nocase; distance:0; content:".cnf"; nocase; distance:0; content:"nmalloc_lib"; fast_pattern; reference:cve,2016-6662; reference:url,legalhackers.com/advisories/MySQL-Exploit-Remote-Root-Code-Execution-Privesc-CVE-2016-6662.html; classtype:attempted-admin; sid:2023202; rev:2; metadata:affected_product MySQL?, attack_target Server, deployment Datacenter, created_at 2016_09_13, updated_at 2019_10_07;)

Added 2019-10-08 19:34:39 UTC


alert tcp any any -> $HOME_NET 3306 (msg:"ET EXPLOIT Possible MySQL? cnf overwrite CVE-2016-6662 Attempt"; flow:established,to_server; content:"|03|"; offset:4; content:"global_log_dir"; nocase; distance:0; content:".cnf"; nocase; distance:0; content:"nmalloc_lib"; fast_pattern:only; reference:cve,2016-6662; reference:url,legalhackers.com/advisories/MySQL-Exploit-Remote-Root-Code-Execution-Privesc-CVE-2016-6662.html; classtype:attempted-admin; sid:2023202; rev:1; metadata:affected_product MySQL?, attack_target Server, deployment Datacenter, created_at 2016_09_13, updated_at 2016_09_13;)

Added 2018-09-13 19:52:54 UTC


Added 2018-09-13 18:01:07 UTC


alert tcp any any -> $HOME_NET 3306 (msg:"ET EXPLOIT Possible MySQL? cnf overwrite CVE-2016-6662 Attempt"; flow:established,to_server; content:"|03|"; offset:4; content:"global_log_dir"; nocase; distance:0; content:".cnf"; nocase; distance:0; content:"nmalloc_lib"; fast_pattern:only; reference:cve,2016-6662; reference:url,legalhackers.com/advisories/MySQL-Exploit-Remote-Root-Code-Execution-Privesc-CVE-2016-6662.html; classtype:attempted-admin; sid:2023202; rev:1; metadata:affected_product MySQL?, attack_target Server, deployment Datacenter, created_at 2016_09_13, updated_at 2016_09_13;)

Added 2017-08-07 21:18:17 UTC


alert tcp any any -> $HOME_NET 3306 (msg:"ET EXPLOIT Possible MySQL? cnf overwrite CVE-2016-6662 Attempt"; flow:established,to_server; content:"|03|"; offset:4; content:"global_log_dir"; nocase; distance:0; content:".cnf"; nocase; distance:0; content:"nmalloc_lib"; fast_pattern:only; reference:cve,2016-6662; reference:url,legalhackers.com/advisories/MySQL-Exploit-Remote-Root-Code-Execution-Privesc-CVE-2016-6662.html; classtype:attempted-admin; sid:2023202; rev:1;)

Added 2016-09-13 17:45:16 UTC


Topic revision: r1 - 2019-10-08 - TWikiGuest
 
This site is powered by the TWiki collaboration platform Powered by Perl This site is powered by the TWiki collaboration platformCopyright © Emerging Threats