SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP vBulletin PHP code injection attempt
This rule looks for PHP code injection patterns present in the template HTTP parameter in HTTP requests sent to the /ajax/api/ad/replaceAdTemplate endpoint on vBulletin web applications.
This rule looks for attempts to exploit a PHP code injection vulnerability in vBulletin web applications.
Attacks/Scans seen in the wild
No known false positives
Cisco Talos Intelligence Group
No rule groups
N/A
Not Applicable
CVE-2025-48827 |
Loading description
|
CVE-2025-48828 |
Loading description
|