WEB_CGI SGI InfoSearch fname attempt

 

Code: p911

Severity: Warning

 

Description: This event is generated when an attempt is made to exploit a known vulnerability in the IRIX infosrch.cgi web application.

Impact: Execution of code of the attackers choosing is possible.

Corrective: Examine the packet to determine whether malicious code was contained in the fname HTTP GET variable, such as unix shell commands. If it looks like it may have been malicious code, determine whether the targetted web server was running a vulnerable version of IRIX. Upgrade to the latest non-affected version of the product. Apply the appropriate vendor supplied patches.