DESCRIPTION

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

Database Oracle
1009342 - Oracle Database DIRECTORY Object Information Disclosure Vulnerability (CVE-2005-0298)


Suspicious Client Application Activity
1008756* - Identified Potentially Malicious RAT Traffic - VII


Unix Samba
1008847 - Samba Information Disclosure Vulnerability (CVE-2017-15275)


Web Application Common
1009350 - Telerik UI for ASP.NET AJAX Multiple Arbitrary File Upload Vulnerabilities (CVE-2017-11357 and CVE-2017-11317)
1009356 - Telerik UI for ASP.NET AJAX RadAsyncUpload Control Path Traversal Vulnerability (CVE-2014-2217)


Web Client Common
1009349 - Microsoft Windows Data Sharing Service Arbitrary File Delete Vulnerability
1009333* - Microsoft Windows Theme API Remote Code Execution Vulnerability (CVE-2018-8413)


Web Server Apache
1006027* - Apache HTTP Server Denial Of Service Vulnerability (CVE-2014-0098)


Web Server HTTPS
1008857 - Trend Micro Control Manager Multiple SQL Injection Remote Code Execution Vulnerability (CVE-2018-3604)


Web Server Miscellaneous
1005527* - Apache Struts OGNL Expression Injection Vulnerability


Web Server Oracle
1009353 - Oracle WebLogic Server RemoteObject Insecure Deserialization Vulnerability (CVE-2018-3245)


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.