WEB_CGI smartsearch.cgi access

 

Code: p948

Severity: Notice

 

Description: This event is generated when a remote user attempts to access smartsearch.cgi on a web server. This may indicate an attempt to exploit an arbitrary code execution vulnerability in Smart Search, a "pay-per-click" search engine.

Impact: Arbitrary code execution.

Corrective: It is not known if this vulnerability has been patched in recent versions. Contact the vendor (http://www.smarterscripts.com/smartsearch/index.shtml) for more details. Check the host for signs of compromise.