SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP Zoho ManageEngine ServiceDesk Plus authentication bypass attempt
This rule looks for HTTP requests sent to Zoho ManageEngine ServiceDesk Plus web applications that attempt to bypass authentication using specially crafted URI paths.
This rule looks for attempts to exploit an authentication bypass in Zoho ManageEngine ServiceDesk Plus web applications.
No public information
No known false positives
Cisco Talos Intelligence Group
Rule Categories::Server::Web Applications
MITRE::ATT&CK Framework::Enterprise::Initial Access::Exploit Public-Facing Application
Authentication Bypass
An Authentication Bypass occurs when there is a way to avoid providing user credentials to a system before performing restricted operations on said system.
CVE-2021-37415 |
Loading description
|