SERVER-WEBAPP -- Snort has detected traffic exploiting vulnerabilities in web based applications on servers.
SERVER-WEBAPP Kubernetes ingress-nginx remote code execution attempt
123b
123a
No public information
No known false positives
Cisco Talos Intelligence Group
Rule Categories::Server::Web Applications
Vulnerability::Severity::Critical
MITRE::ATT&CK Framework::Enterprise::Initial Access::Exploit Public-Facing Application
Vulnerability::Severity::High
Local File Inclusion
Local File Inclusion (LFI) attackers attempt to trick the web server into executing a file local to its own file system. The attacker might have saved the file there in another way first, or the target file could be a local executable that should not be accessible to the web server otherwise. A successful LFI can lead to data leaks or remote code execution. Avoid dynamic inclusion of user input files, or whitelist files that may be included.
CVE-2012-0308 |
Loading description
|
CVE-2025-1097 |
Loading description
|
CVE-2025-1098 |
Loading description
|
CVE-2025-1974 |
Loading description
|
CVE-2025-24514 |
Loading description
|