WEB_IIS cmd32.exe access

 

Code: p1142

Severity: Warning

 

Description: This event is generated when an attempt is made to access the cmd32.exe file.

Impact: Remote access. This attack may permit the execution of arbitrary commands on the vulnerable server.

Corrective: Make sure that the cmd32.exe is not in the webroot directory. Make sure that all appropriate patches have been applied.