Search and filter across all detection sources
6 rules
Attempt to Exploit CVE-2023-22527 in Atlassian Confluence
Detects attempts to exploit a template injection vulnerability in Atlassian Confluence Data Center and Server that leads to remote code execution (CVE-2023-22527).
Attempt to Exploit CVE-2024-0204
Detects attempts to exploit an unauthenticated bypass in GoAnywhere MFT (CVE-2024-0204).
CVE-2023-49103 Potential Exploitation Attempt - OwnCLoud
Detects potential exploitation attempt of CVE-2023-49103 against OwnCloud
CVE-2024-27198 Jetbrains TeamCity authentication bypass
Detects suspicious HTTP(S) GET or POST requests based on specific regular expressions that detect possible authentication bypass attempts towards a Jetbrains TeamCity server
CVE-2024-3400 - Palo Alto Networks Firewalls Command Injection
Detects GET requests to '/global-protect/login[or]logout.esp' that indicate possible exploitation of the vulnerability CVE-2024-3400.
Detection of Path Traversal Attacks on JetBrains TeamCity CVE-2024-27199
Detects potential path traversal attacks exploiting specific vulnerable paths to access sensitive endpoints without authentication.