WEB_CGI simplestmail.cgi access

 

Code: p999

Severity: Notice

 

Description: This event is generated when an attempt is made to access simplestmail.cgi on an internal web server. This may indicate an attempt to exploit a remote command execution vulnerability in Leif M. Wright's Simple Guestbook.

Impact: Remote execution of arbitrary code, possibly leading to remote root compromise.

Corrective: Disable simplestmail.cgi.