bash Shellshock web vulnerability CVE-2014-6271


Description   This signature allows you to detect or block attempts of exploiting the bash Shell Shock vulnerability through vulnerable HTTP apps.
     
Default
configuration
 
Profiles High Medium Low Internet
Action Block Block Block Block
Alarm Level Major Major Major Major
     
References   CVE: CVE-2014-6271
CVE: CVE-2014-7169
     
Available since   ASQ v5.0.0
     
Protects   Shell Linux Environment Variables ShellShock Remote Code Execution Vulnerability
Cisco Unified Communications Manager Multiple Vulnerabilities Fixed by 9.2, 10.5.2 and 11.0.1
GNU Bash Environment Variables Function Parsing Two Vulnerabilities
GNU Bash Script Parsing Two Vulnerabilities
GNU Bash Environment Variables Parsing OS Commands Injection Vulnerability
GNU Bash Shell Function Definitions OS Commands Injection Vulnerability
100 last CVE   CVE-2014-7227
CVE-2014-7187
CVE-2014-7186
CVE-2014-7169
CVE-2014-6278
CVE-2014-6277
CVE-2014-6271


 
 
 
 
 Risk level 
Critical