WEB_PHP phptest.php access

 

Code: p1640

Severity: Warning

 

Description: This event is generated when an attempt is made to access the file "phptest.php". BadBlue Personal Edition 2.4 servers could disclose confidential information on the software configuration towards an attacker.

Impact: Information gathering. This signature is usually indicative of a reconaissance probe. Succesful exploitation would provide the originator of the attack with the installation path of the software.

Corrective: Ensure the system is using an up to date version of the software and has had all vendor supplied patches applied.