PhpFox.Core.Redirect.Insecure.Deserialization
Description
This indicates an attack attempt to exploit an Insecure Deserialization Vulnerability in phpFox.
The vulnerability is due to improper validation of objects passed to the vulnerable application. A remote, unauthenticated attacker could exploit this vulnerability by sending a crafted request to the target server. Successful exploitation could result in arbitrary code execution under the security context of SYSTEM.
Affected Products
phpFox prior to 4.8.13
Impact
System Compromise: Remote attackers can gain control of vulnerable systems.
Recommended Actions
Apply the most recent upgrade or patch from the vendor.
https://docs.phpfox.com/display/FOX4MAN/phpFox+4.8.14
Telemetry
Coverage
IPS (Regular DB) | |
IPS (Extended DB) |