""ET EXPLOIT Possible Internet Explorer VBscript failure to handle error case information disclosure CVE-2014-6332 Common Construct M2""

SID: 2022797

Revision: 1

Class Type: attempted-admin

Metadata: created_at 2016_05_06, cve CVE_2014_6332, updated_at 2016_05_06

Reference:

Protocol: tcp

Source Network: $EXTERNAL_NET

Source Port: $HTTP_PORTS

Destination Network: $HOME_NET

Destination Port: any

Flow: established,from_server

Contents:

  • Value: "redim"

  • Value: "Preserve"

  • Value: "VBScript"

  • Value: "chrw"

  • Value: "32767"

  • Value: "chrw"

  • Value: "2176"

Within:

PCRE:

Special Options:

  • file_data

  • nocase

  • nocase

  • nocase

source