Rule Update
25-008 (February 25, 2025)
DESCRIPTION
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
Ivanti Avalanche
1012298 - Ivanti Avalanche Authentication Bypass Vulnerability (CVE-2024-13181)
Ivanti Endpoint Manager
1012271 - Ivanti Endpoint Manager Multiple Denial Of Service Vulnerabilities
Solr Service
1012280 - Apache Solr Authentication Bypass Vulnerability (CVE-2024-45216)
1012291 - Apache Solr Directory Traversal Vulnerability (CVE-2025-52012)
Web Client Common
1012282* - Microsoft Windows Themes Spoofing Vulnerability (CVE-2025-21308)
Integrity Monitoring Rules:
1012288 - Vulnerability - Microsoft Windows Active Directory Elevation of Privilege (CVE-2025-21293) (ATT&CK T1112, T1546.003, T1574.011)
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
Ivanti Avalanche
1012298 - Ivanti Avalanche Authentication Bypass Vulnerability (CVE-2024-13181)
Ivanti Endpoint Manager
1012271 - Ivanti Endpoint Manager Multiple Denial Of Service Vulnerabilities
Solr Service
1012280 - Apache Solr Authentication Bypass Vulnerability (CVE-2024-45216)
1012291 - Apache Solr Directory Traversal Vulnerability (CVE-2025-52012)
Web Client Common
1012282* - Microsoft Windows Themes Spoofing Vulnerability (CVE-2025-21308)
Integrity Monitoring Rules:
1012288 - Vulnerability - Microsoft Windows Active Directory Elevation of Privilege (CVE-2025-21293) (ATT&CK T1112, T1546.003, T1574.011)
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.