Rule Update
23-031 (July 18, 2023)
DESCRIPTION
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
Redis Server
1011812 - Redis Denial Of Service Vulnerability (CVE-2022-36021)
Unix Samba
1011796* - Linux Kernel KSMBD Denial of Service Vulnerability (CVE-2023-32247)
Web Application PHP Based
1011435* - ThinkCMF Remote Code Execution Vulnerability
Web Client Common
1011818 - Adobe Acrobat And Reader Remote Code Execution Vulnerability (CVE-2023-26405)
Web Server Adobe ColdFusion
1011829 - Adobe ColdFusion Remote Code Execution Vulnerability (CVE-2023-38203)
Web Server Common
1011791 - JetBrains TeamCity Cross-Site Scripting Vulnerability (CVE-2022-48343)
1011755* - JetBrains TeamCity Cross-Site Scripting Vulnerability (CVE-2022-48426)
Web Server HTTPS
1011788 - SNIProxy Stack Buffer Overflow Vulnerability (CVE-2023-25076)
Web Server Miscellaneous
1011739* - GitLab Cross-Site Scripting Vulnerability (CVE-2023-0050)
1011813 - GitLab Cross-Site Scripting Vulnerability (CVE-2023-2442)
Web Server SharePoint
1011814 - Microsoft SharePoint Server Remote Code Execution Vulnerability (CVE-2023-24955)
Zoho ManageEngine
1011770* - Zoho ManageEngine ADManager Plus Command Injection Vulnerability (CVE-2023-29084)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
Redis Server
1011812 - Redis Denial Of Service Vulnerability (CVE-2022-36021)
Unix Samba
1011796* - Linux Kernel KSMBD Denial of Service Vulnerability (CVE-2023-32247)
Web Application PHP Based
1011435* - ThinkCMF Remote Code Execution Vulnerability
Web Client Common
1011818 - Adobe Acrobat And Reader Remote Code Execution Vulnerability (CVE-2023-26405)
Web Server Adobe ColdFusion
1011829 - Adobe ColdFusion Remote Code Execution Vulnerability (CVE-2023-38203)
Web Server Common
1011791 - JetBrains TeamCity Cross-Site Scripting Vulnerability (CVE-2022-48343)
1011755* - JetBrains TeamCity Cross-Site Scripting Vulnerability (CVE-2022-48426)
Web Server HTTPS
1011788 - SNIProxy Stack Buffer Overflow Vulnerability (CVE-2023-25076)
Web Server Miscellaneous
1011739* - GitLab Cross-Site Scripting Vulnerability (CVE-2023-0050)
1011813 - GitLab Cross-Site Scripting Vulnerability (CVE-2023-2442)
Web Server SharePoint
1011814 - Microsoft SharePoint Server Remote Code Execution Vulnerability (CVE-2023-24955)
Zoho ManageEngine
1011770* - Zoho ManageEngine ADManager Plus Command Injection Vulnerability (CVE-2023-29084)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.