""ET EXPLOIT FREAK Weak Export Suite From Server (CVE-2015-0204)""

SID: 2020661

Revision: 3

Class Type: bad-unknown

Metadata: created_at 2015_03_11, cve CVE_2015_0204, updated_at 2015_03_11

Reference:

  • cve

  • 2015-1637

Protocol: tcp

Source Network: any

Source Port: [21,25,110,143,443,465,587,636,989:995,5061,5222]

Destination Network: $HOME_NET

Destination Port: any

Flow: established,from_server

Contents:

  • Value: "|16 03|" Depth: 2

  • Value: "|02|"

  • Value: "|00 19|"

Within: 2

PCRE:

Special Options:

  • fast_pattern

source