title: CVE-2020-0688 Exploitation Attempt id: 7c64e577-d72e-4c3d-9d75-8de6d1f9146a status: test description: Detects CVE-2020-0688 Exploitation attempts references: - https://github.com/Ridter/cve-2020-0688 author: NVISO date: 2020-02-27 modified: 2023-01-02 tags: - attack.initial-access - attack.t1190 - cve.2020-0688 - detection.emerging-threats logsource: category: webserver detection: selection: cs-uri-query|contains|all: - '/ecp/default.aspx' - '__VIEWSTATEGENERATOR=' - '__VIEWSTATE=' condition: selection falsepositives: - Unknown level: high