Short Name |
HTTP:CTS:CVE-2015-1592-RCE |
|---|---|
Severity |
Major |
Recommended |
No |
Category |
HTTP |
Keywords |
Movable Type CVE-2015-1592 Remote Code Execution |
Release Date |
2020/04/23 |
Update Number |
3274 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known vulnerability against Movable. A successful attack can lead to arbitrary code execution.
Movable Type Pro, Open Source, and Advanced before 5.2.12 and Pro and Advanced 6.0.x before 6.0.7 does not properly use the Perl Storable::thaw function, which allows remote attackers to include and execute arbitrary local Perl files and possibly execute arbitrary code via unspecified vectors.