SERVER-OTHER -- Snort has detected traffic exploiting vulnerabilities in a server in the network.
SERVER-OTHER Advantech WebAccess webvrpcs service arbitrary command execution attempt
This rule looks for inbound DCE/RPC requests that are intended to exploit an arbitrary command execution vulnerability in the Advantech WebAccess webvrpcs service.
This rule fires on attempts to exploit an arbitrary command execution vulnerability in the Advantech WebAccess webvrpcs service.
No public information
No known false positives
Cisco Talos Intelligence Group
Rule Categories::Server::Other
MITRE::ATT&CK Framework::Enterprise::Initial Access::Exploit Public-Facing Application
N/A
Not Applicable
CVE-2017-16720 |
Loading description
|