SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP MVPower DVR Shell arbitrary command execution attempt
The rule alerts in the event there is an arbitrary command injection execution detected in MVPower DVR Shell. There is potential for multiple failures in confidentiality, integrity and availability due to arbitrary remote code execution.
This event is generated when an attempt is made to exploit a remote command injection vulnerability in MVPower DVR devices.
Public information/Proof of Concept available
No known false positives
Cisco Talos Intelligence Group
No rule groups
None
No information provided
None
Tactic: Execution
Technique: Malicious File
For reference, see the MITRE ATT&CK vulnerability types here: https://attack.mitre.org