SERVER-OTHER -- Snort has detected traffic exploiting vulnerabilities in a server in the network.
SERVER-OTHER Apache ShenYu admin JWT authentication bypass attempt
This rule looks for malicious attempts to exploit an authentication bypass vulnerability within Apache ShenYu web applications
This rule looks for attempts to exploit an authentication bypass vulnerability in Apache ShenYu web applications.
Public information/Proof of Concept available
No known false positives
Cisco Talos Intelligence Group
MITRE::ATT&CK Framework::Enterprise::Initial Access::Exploit Public-Facing Application
Vulnerability::Severity::Critical
Vulnerability::Severity::High
Authentication Bypass
An Authentication Bypass occurs when there is a way to avoid providing user credentials to a system before performing restricted operations on said system.
CVE-2021-37580 |
Loading description
|