SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP Apache OFBiz XMLRPC unsafe deserialization attempt
This rule looks for serialized Java objects sent to an Apache OFBiz web-server endpoint that can execute arbitrary commands.
This rule looks for attempts to exploit an unsafe deserialization vulnerability in Apache OFBiz.
No public information
No known false positives
Cisco Talos Intelligence Group
No rule groups
None
No information provided
None
Tactic: Initial Access
Technique: Exploit Public-Facing Application
For reference, see the MITRE ATT&CK vulnerability types here: https://attack.mitre.org