Rule Update
19-037 (July 9, 2019)
Publish date: July 09, 2019
DESCRIPTION
* indicates a new version of an existing rule
Deep Packet Inspection Rules:
DCERPC Services - Client
1009586 - Microsoft Internet Explorer DLL Loading Arbitrary Code Execution Vulnerability Over Network Share (CVE-2011-0038)
1009588 - Microsoft Office Insecure Library Loading Vulnerability Over Network Share (CVE-2010-3337)
DHCPv6 Client - Incoming
1009798 - Microsoft Windows DHCP Client Remote Code Execution Vulnerability (CVE-2019-0698)
HP Intelligent Management Center (IMC)
1009799* - HPE Intelligent Management Center 'AccessMgrServlet ClassName' Insecure Deserialization (CVE-2019-11945)
Microsoft Office
1009835 - Microsoft Excel Information Disclosure Vulnerability (CVE-2019-1112)
Web Application Common
1009630* - DotNetNuke Remote Code Execution Vulnerability (CVE-2017-9822)
1009580 - Jenkins CI Server Forced Migration Of User Records Vulnerability (CVE-2018-1000863)
1009701 - Jenkins Metaprogramming Remote Code Execution Vulnerability (CVE-2018-1000408)
Web Client Common
1009832 - Google Chrome JS Execution Use-After-Free Vulnerability
1009593 - Microsoft Internet Explorer DLL Loading Arbitrary Code Execution Vulnerability Over WebDav (CVE-2011-0038)
1009591 - Microsoft Office Insecure Library Loading Vulnerability Over WebDav (CVE-2010-3337)
1009532 - Microsoft Visual Studio Information Disclosure Vulnerability (CVE-2019-0537)
Web Client Internet Explorer/Edge
1009843 - Microsoft Edge Chakra Scripting Engine Memory Corruption Vulnerability (CVE-2019-1062)
1009842 - Microsoft Edge Chakra Scripting Engine Memory Corruption Vulnerability (CVE-2019-1092)
1009840 - Microsoft Edge Chakra Scripting Engine Memory Corruption Vulnerability (CVE-2019-1103)
1009841 - Microsoft Edge Chakra Scripting Engine Memory Corruption Vulnerability (CVE-2019-1106)
1009834 - Microsoft Edge Chakra Scripting Engine Memory Corruption Vulnerability (CVE-2019-1107)
1009838 - Microsoft Internet Explorer And Edge Memory Corruption Vulnerability (CVE-2019-1104)
1009839 - Microsoft Internet Explorer And Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-1001)
1009836 - Microsoft Internet Explorer Memory Corruption Vulnerability (CVE-2019-1063)
1009837 - Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability (CVE-2019-1004)
Web Server Oracle
1009831 - Oracle WebLogic Arbitrary File Read Vulnerability (CVE-2019-2615)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Deep Packet Inspection Rules:
DCERPC Services - Client
1009586 - Microsoft Internet Explorer DLL Loading Arbitrary Code Execution Vulnerability Over Network Share (CVE-2011-0038)
1009588 - Microsoft Office Insecure Library Loading Vulnerability Over Network Share (CVE-2010-3337)
DHCPv6 Client - Incoming
1009798 - Microsoft Windows DHCP Client Remote Code Execution Vulnerability (CVE-2019-0698)
HP Intelligent Management Center (IMC)
1009799* - HPE Intelligent Management Center 'AccessMgrServlet ClassName' Insecure Deserialization (CVE-2019-11945)
Microsoft Office
1009835 - Microsoft Excel Information Disclosure Vulnerability (CVE-2019-1112)
Web Application Common
1009630* - DotNetNuke Remote Code Execution Vulnerability (CVE-2017-9822)
1009580 - Jenkins CI Server Forced Migration Of User Records Vulnerability (CVE-2018-1000863)
1009701 - Jenkins Metaprogramming Remote Code Execution Vulnerability (CVE-2018-1000408)
Web Client Common
1009832 - Google Chrome JS Execution Use-After-Free Vulnerability
1009593 - Microsoft Internet Explorer DLL Loading Arbitrary Code Execution Vulnerability Over WebDav (CVE-2011-0038)
1009591 - Microsoft Office Insecure Library Loading Vulnerability Over WebDav (CVE-2010-3337)
1009532 - Microsoft Visual Studio Information Disclosure Vulnerability (CVE-2019-0537)
Web Client Internet Explorer/Edge
1009843 - Microsoft Edge Chakra Scripting Engine Memory Corruption Vulnerability (CVE-2019-1062)
1009842 - Microsoft Edge Chakra Scripting Engine Memory Corruption Vulnerability (CVE-2019-1092)
1009840 - Microsoft Edge Chakra Scripting Engine Memory Corruption Vulnerability (CVE-2019-1103)
1009841 - Microsoft Edge Chakra Scripting Engine Memory Corruption Vulnerability (CVE-2019-1106)
1009834 - Microsoft Edge Chakra Scripting Engine Memory Corruption Vulnerability (CVE-2019-1107)
1009838 - Microsoft Internet Explorer And Edge Memory Corruption Vulnerability (CVE-2019-1104)
1009839 - Microsoft Internet Explorer And Edge Scripting Engine Memory Corruption Vulnerability (CVE-2019-1001)
1009836 - Microsoft Internet Explorer Memory Corruption Vulnerability (CVE-2019-1063)
1009837 - Microsoft Internet Explorer Scripting Engine Memory Corruption Vulnerability (CVE-2019-1004)
Web Server Oracle
1009831 - Oracle WebLogic Arbitrary File Read Vulnerability (CVE-2019-2615)
Integrity Monitoring Rules:
There are no new or updated Integrity Monitoring Rules in this Security Update.
Log Inspection Rules:
There are no new or updated Log Inspection Rules in this Security Update.
Featured Stories
- The Mirage of AI Programming: Hallucinations and Code IntegrityThe adoption of large language models (LLMs) and Generative Pre-trained Transformers (GPTs), such as ChatGPT, by leading firms like Microsoft, Nuance, Mix and Google CCAI Insights, drives the industry towards a series of transformative changes. As the use of these new technologies becomes prevalent, it is important to understand their key behavior, advantages, and the risks they present.Read more
- Open RAN: Attack of the xAppsThis article discusses two O-RAN vulnerabilities that attackers can exploit. One vulnerability stems from insufficient access control, and the other arises from faulty message handlingRead more
- A Closer Exploration of Residential Proxies and CAPTCHA-Breaking ServicesThis article, the final part of a two-part series, focuses on the details of our technical findings and analyses of select residential proxies and CAPTCHA-solving services.Read more
- How Residential Proxies and CAPTCHA-Solving Services Become Agents of AbuseThis article, the first of a two-part series, provides insights on how abusers and cybercriminals use residential proxies and CAPTCHA-solving services to enable bots, scrapers, and stuffers, and proposes security countermeasures for organizations.Read more