SERVER-OTHER -- Snort has detected traffic exploiting vulnerabilities in a server in the network.
SERVER-OTHER lodash defaultsDeep prototype pollution attempt
This rule is looking for an external user that attempts to send a JSON structure that can be used to alter Javascript prototypes in use on the vulnerable host.
This rule alerts on initial attack traffic.
No public information
No known false positives
Cisco Talos Intelligence Group
No rule groups
CVE-2019-10744 |
Loading description
|
Tactic: Initial Access
Technique: Exploit Public-Facing Application
For reference, see the MITRE ATT&CK vulnerability types here: https://attack.mitre.org