Rule Update
24-047 (October 8, 2024)
DESCRIPTION
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
DCERPC Services - Client
1012075* - Microsoft Windows MSHTML Platform Remote Code Execution Vulnerability Over SMB (CVE-2024-38112)
Ivanti Avalanche
1012053* - Ivanti Avalanche Directory Traversal Vulnerability (CVE-2024-24994)
Ivanti Endpoint Manager
1012149 - Ivanti Endpoint Manager Multiple SQL Injection Vulnerabilities - 1
Kubernetes API Server
1012151 - Kubernetes Ingress-Nginx Command Injection Vulnerability (CVE-2024-7646)
PaperCut
1012041* - PaperCut NG And MF Reflected Cross-Site Scripting Vulnerability (CVE-2024-1883)
SAP NetWeaver Java Application Server
1012085* - SAP NetWeaver AS JAVA SQL Injection Vulnerability (CVE-2016-2386)
SolarWinds Dameware Web Help Desk
1012127* - SolarWinds Dameware Web Help Desk Deserialization Remote Code Execution Vulnerability (CVE-2024-28986)
Web Server HTTPS
1011980* - Centreon SQL Injection Vulnerability (CVE-2024-23119)
1012081* - Centreon SQL Injection Vulnerability (CVE-2024-32501 and CVE-2024-5723)
1012092* - Progress WhatsUp Gold Path Traversal Vulnerability (CVE-2024-5018)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
DCERPC Services - Client
1012075* - Microsoft Windows MSHTML Platform Remote Code Execution Vulnerability Over SMB (CVE-2024-38112)
Ivanti Avalanche
1012053* - Ivanti Avalanche Directory Traversal Vulnerability (CVE-2024-24994)
Ivanti Endpoint Manager
1012149 - Ivanti Endpoint Manager Multiple SQL Injection Vulnerabilities - 1
Kubernetes API Server
1012151 - Kubernetes Ingress-Nginx Command Injection Vulnerability (CVE-2024-7646)
PaperCut
1012041* - PaperCut NG And MF Reflected Cross-Site Scripting Vulnerability (CVE-2024-1883)
SAP NetWeaver Java Application Server
1012085* - SAP NetWeaver AS JAVA SQL Injection Vulnerability (CVE-2016-2386)
SolarWinds Dameware Web Help Desk
1012127* - SolarWinds Dameware Web Help Desk Deserialization Remote Code Execution Vulnerability (CVE-2024-28986)
Web Server HTTPS
1011980* - Centreon SQL Injection Vulnerability (CVE-2024-23119)
1012081* - Centreon SQL Injection Vulnerability (CVE-2024-32501 and CVE-2024-5723)
1012092* - Progress WhatsUp Gold Path Traversal Vulnerability (CVE-2024-5018)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.