SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP Next.js remote code execution attempt
This rule looks for remote code execution strings present in HTTP requests sent to a vulnerable endpoint on Next.js web applications.
This rule looks for attempts to exploit a remote code execution vulnerability in Next.js web applications.
Public information/Proof of Concept available
No known false positives
Cisco Talos Intelligence Group
Rule Categories::Server::Web Applications
MITRE::ATT&CK Framework::Enterprise::Initial Access::Exploit Public-Facing Application
None
No information provided
None