Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Snort-Signatures
[Top] [All Lists]

[Snort-sigs] Snort Community Rules Update

Subject: [Snort-sigs] Snort Community Rules Update
Date: Tue, 09 May 2006 17:11:14 -0400
This message is to announce the availability of an update for the Sourcefire community rule set, which can be downloaded free of cost or registration from http://www.snort.org/pub-bin/downloads.cgi.

New rules in this release are identified as SIDs 100000285-100000300. This update includes rules which detect a remote file inclusion vulnerability in the ldap_var.inc.php file from the Dokeos knowledge management tool; unauthorized administrative access to the X-Poll software package; and access to multiple vulnerable pages in the Claroline web application.

A list of modified rules and their SIDs follows.

Alex Kirk
Community Rules Maintainer
Sourcefire, Inc.

100000285 || COMMUNITY WEB-PHP ldap_var.inc.php remote file include attempt
100000286 || COMMUNITY WEB-PHP X Poll admin access
100000287 || COMMUNITY WEB-PHP Claroline ldap.inc.php access
100000288 || COMMUNITY WEB-PHP Claroline atutor.inc.php access
100000289 || COMMUNITY WEB-PHP Claroline db-generic.inc.php access
100000290 || COMMUNITY WEB-PHP Claroline docebo.inc.php access
100000291 || COMMUNITY WEB-PHP Claroline dokeos.1.6.inc.php access
100000292 || COMMUNITY WEB-PHP Claroline dokeos.inc.php access
100000293 || COMMUNITY WEB-PHP Claroline ganesha.inc.php access
100000294 || COMMUNITY WEB-PHP Claroline mambo.inc.php access
100000295 || COMMUNITY WEB-PHP Claroline moodle.inc.php access
100000296 || COMMUNITY WEB-PHP Claroline phpnuke.inc.php access
100000297 || COMMUNITY WEB-PHP Claroline postnuke.inc.php access
100000298 || COMMUNITY WEB-PHP Claroline spip.inc.php access
100000299 || COMMUNITY WEB-PHP Claroline event/init_event_manager.inc.php access
100000300 || COMMUNITY WEB-PHP Claroline export_exe_tracking.class.php access



------------------------------------------------------- Using Tomcat but need to do more? Need to support web services, security? Get stuff done quickly with pre-integrated technology to make your job easier Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642 _______________________________________________ Snort-sigs mailing list Snort-sigs@lists.sourceforge.net https://lists.sourceforge.net/lists/listinfo/snort-sigs

<Prev in Thread] Current Thread [Next in Thread>