RULE(RULE ID:338247)

Rule General Information
Release Date: 2024-07-10
Rule Name: Webshell Upload Detection - Python Script
Severity:
CVE ID:
Rule Protection Details
Description: Webshell is a website Webshell management tool. Using the uploaded webshell, you can execute arbitrary commands under the authority of the web server, and can bypass most of the WAF and probe devices currently on the market. This rule is used to detect suspicious Python Webshell upload behavior.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Users should scan server content to see if Trojan horse files exist.