alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Joomla 3.7.0 - Sql Injection (CVE-2017-8917)"; flow:to_server,established; content:".php?"; http_uri; content:"option="; http_uri; content:"view="; http_uri; content:"layout="; http_uri; content:"&list[fullordering]="; http_uri; fast_pattern; pcre:"/&list\[fullordering\]=(?:[a-zA-Z0-9])*[\x22\x27\x28]/Ui"; metadata: former_category WEB_SPECIFIC_APPS; reference:url,blog.sucuri.net/2017/05/sql-injection-vulnerability-joomla-3-7.html; reference:cve,2017-8917; classtype:web-application-attack; sid:2024342; rev:4; metadata:affected_product Joomla, attack_target Web_Server, deployment Perimeter, signature_severity Major, created_at 2017_06_01, performance_impact Low, updated_at 2019_10_07;)

Added 2019-10-08 19:34:45 UTC


alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Joomla 3.7.0 - Sql Injection (CVE-2017-8917)"; flow:to_server,established; content:".php?"; http_uri; content:"option="; http_uri; content:"view="; http_uri; content:"layout="; http_uri; content:"&list[fullordering]="; http_uri; fast_pattern:only; pcre:"/&list\[fullordering\]=(?:[a-zA-Z0-9])*[\x22\x27\x28]/Ui"; metadata: former_category WEB_SPECIFIC_APPS; reference:url,blog.sucuri.net/2017/05/sql-injection-vulnerability-joomla-3-7.html; reference:cve,2017-8917; classtype:web-application-attack; sid:2024342; rev:3; metadata:affected_product Joomla, attack_target Web_Server, deployment Perimeter, signature_severity Major, created_at 2017_06_01, performance_impact Low, updated_at 2017_06_02;)

Added 2018-09-13 19:53:49 UTC


Added 2018-09-13 18:01:36 UTC


alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Joomla 3.7.0 - Sql Injection (CVE-2017-8917)"; flow:to_server,established; content:".php?"; http_uri; content:"option="; http_uri; content:"view="; http_uri; content:"layout="; http_uri; content:"&list[fullordering]="; http_uri; fast_pattern:only; pcre:"/&list\[fullordering\]=(?:[a-zA-Z0-9])*[\x22\x27\x28]/Ui"; metadata: former_category WEB_SPECIFIC_APPS; reference:url,blog.sucuri.net/2017/05/sql-injection-vulnerability-joomla-3-7.html; reference:cve,2017-8917; classtype:web-application-attack; sid:2024342; rev:3; metadata:affected_product Joomla, attack_target Web_Server, deployment Perimeter, signature_severity Major, created_at 2017_06_01, performance_impact Low, updated_at 2017_06_02;)

Added 2017-08-07 21:19:41 UTC


alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Joomla 3.7.0 - Sql Injection (CVE-2017-8917)"; flow:to_server,established; content:".php?"; http_uri; content:"option="; http_uri; content:"view="; http_uri; content:"layout="; http_uri; content:"&list[fullordering]="; http_uri; fast_pattern:only; pcre:"/&list\[fullordering\]=(?:[a-zA-Z0-9])*[\x22\x27\x28]/Ui"; reference:url,blog.sucuri.net/2017/05/sql-injection-vulnerability-joomla-3-7.html; reference:cve,2017-8917; classtype:web-application-attack; sid:2024342; rev:3;)

Added 2017-06-02 16:55:28 UTC


alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS Joomla 3.7.0 - Sql Injection (CVE-2017-8917)"; flow:to_server,established; content:".php?"; http_uri; content:"option="; http_uri; content:"view="; http_uri; content:"layout="; http_uri; content:"&list[fullordering]="; http_uri; fast_pattern:only; pcre:"/&list\[fullordering\]=([a-zA-Z0-9]+)?[\x22\x27\x28]/Ui"; reference:url,blog.sucuri.net/2017/05/sql-injection-vulnerability-joomla-3-7.html; reference:cve,2017-8917; classtype:web-application-attack; sid:2024342; rev:2;)

Added 2017-06-01 16:43:16 UTC


Topic revision: r1 - 2019-10-08 - TWikiGuest
 
This site is powered by the TWiki collaboration platform Powered by Perl This site is powered by the TWiki collaboration platformCopyright © Emerging Threats