Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

HTTP:REQERR:BIN-DATA-HEADER

Severity

Low

Recommended

No

Recommended Action

Drop

Category

HTTP

Keywords

Binary Data in HTTP-Header

Release Date

2003/08/13

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

HTTP: Binary Data in HTTP-Header


This signature detects binary client-to-server data on an HTTP connection. Normally, HTTP connections should not permit binary data (except for file uploads that can be blocked). However, Web servers using characters outside the ASCII character set and Web e-mail systems can send and receive binary data. Administrators should evaluate their networks accordingly.

Extended Description

The presence of binary data in an HTTP request may indicate an attempt to exploit a vulnerability in an HTTP server and launch an attack.

References

  • CVE: CVE-2004-0385
  • URL: http://www.w3.org/Protocols/rfc2616/rfc2616.html

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out