Rule Update
18-025 (May 1, 2018)
DESCRIPTION
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
HP OpenView Network Node Manager Web
1004573* - HP OpenView Network Node Manager Multiple Remote Code Execution Vulnerabilities (CVE-2011-0270)
Microsoft Office
1004266* - Identified Suspicious Microsoft Office Document
Web Application PHP Based
1008970* - Drupal Core Remote Code Execution Vulnerability (CVE-2018-7600)
Web Client Common
1008891* - Adobe Acrobat And Reader Multiple Security Vulnerabilities (APSB18-02) - 1
1004315* - Identified Malicious PDF Document - 3
1009013* - Microsoft Windows VBScript Engine Remote Code Execution Vulnerability (CVE-2018-1004)
Web Client Internet Explorer/Edge
1008826* - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2018-0758)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
HP OpenView Network Node Manager Web
1004573* - HP OpenView Network Node Manager Multiple Remote Code Execution Vulnerabilities (CVE-2011-0270)
Microsoft Office
1004266* - Identified Suspicious Microsoft Office Document
Web Application PHP Based
1008970* - Drupal Core Remote Code Execution Vulnerability (CVE-2018-7600)
Web Client Common
1008891* - Adobe Acrobat And Reader Multiple Security Vulnerabilities (APSB18-02) - 1
1004315* - Identified Malicious PDF Document - 3
1009013* - Microsoft Windows VBScript Engine Remote Code Execution Vulnerability (CVE-2018-1004)
Web Client Internet Explorer/Edge
1008826* - Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2018-0758)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.