""ET POLICY Oracle T3 Response with CVE-2020-2551 Vulnerable Version (12.2.1)""

SID: 2030130

Revision: 2

Class Type: policy-violation

Metadata: attack_target Server, created_at 2020_05_08, cve CVE_2020_2551, deployment Perimeter, performance_impact Low, signature_severity Informational, updated_at 2020_05_08

Reference:

Protocol: tcp

Source Network: $HTTP_SERVERS

Source Port: any

Destination Network: $EXTERNAL_NET

Destination Port: any

Flow: established,from_server

Contents:

  • Value: "HELO|3a|12.2.1" Depth: 11

Within:

PCRE:

Special Options:

  • fast_pattern

source