IPS Signature Database Update

Name ips.sig
Version 3.0.116
StoneOS Firewall 5.5R8P2 or above, and NIPS/IDS 5.5R5-3.5 or above, and BDS 5.5R8-3.3 or above
Release Date 2022-07-11
New Signature
(44)
Rule ID Rule Name StoneOS Detail
336792 WatchGuard Unauthenticated Remote Code Execution Vulnerability (CVE-2022-26318) 5.5R4 or above click for more information
336774 Microsoft Windows PE File Signature Spoofing Vulnerability (CVE-2020-1599) 5.0R4 or above click for more information
715610 Apache Dubbo Script Routing Remote Code Execution Vulnerability (CVE-2021-30181) 5.0R4 or above click for more information
336788 Qzdatasoft Deserialization Command Injection Vulnerability 5.5R4 or above click for more information
330163 LAquis SCADA NOME HTTP Parameter Command Injection Vulnerability (CVE-2018-18996) 5.0R4 or above click for more information
330886 WiKID 2FA Enterprise Server PreRegister Stored Cross-Site Scripting Vulnerability (CVE-2019-17115) 5.0R4 or above click for more information
330896 Microsoft Internet Explorer 11 MSHTML CSplice Use-After-Free Vulnerability (CVE-2014-1785) 5.0R4 or above click for more information
336708 Oracle BI Publisher XML External Entity Injection Vulnerability (CVE-2021-2401) 5.0R4 or above click for more information
336771 Trend Micro Mobile Security Enterprise SQL Injection Vulnerability (CVE-2017-14078) 5.0R4 or above click for more information
1705202 Oracle Database DBMS_SNAP_INTERNAL Package buffer overflow Vulnerability (CVE-2007-2170) 5.0R4 or above click for more information
336719 Novell File Reporter FSFUI File Upload Vulnerability (CVE-2012-4959) 5.0R4 or above click for more information
336770 Ruckus IoT Controller Web UI createUser Remote Command Injection Vulnerability (CVE-2020-26878) 5.0R4 or above click for more information
336704 Lattice Semiconductor PAC-Designer 6.21 Symbol Value Buffer Overflow Vulnerability (CVE-2012-2915) 5.5R4 or above click for more information
713888 NS HP OfficeJet Pro and PageWide Pro PJL Interface Directory Traversal RCE Vulnerability (CVE-2017-2741) 5.0R4 or above click for more information
315286 Adobe Acrobat and Reader U3D Uninitialized Variable Vulnerability -1 (CVE-2011-2462) 5.5R5 or above click for more information
334272 Novell Sentinel Log Manager Retention Policy Security Restriction Bypass 5.0R4 or above click for more information
336791 SAP NetWeaver Application Server Remote Code Execution Vulnerability (CVE-2022-22536) 5.5R4 or above click for more information
806305 Asterisk PJSIP Invalid fmtp Media Attribute Denial Of Service Vulnerability (CVE-2018-1000099) 5.5R4 or above click for more information
336794 Tool Website FOFA Referer Detected 5.0R4 or above click for more information
1705201 Oracle Database SQL Compiler Access Control Security Policy Bypass vulnerability (CVE-2007-3855) 5.0R4 or above click for more information
......
Updated Signature
(63)
Rule ID Rule Name StoneOS Detail
710627 Adobe Reader DC JPEG2000 Out of bounds Read Vulnerability (CVE-2016-7854) 5.0R4 or above Click here for more information
711086 Adobe Acrobat and Reader JPEG2000 out of Bounds Read Vulnerability (CVE-2017-2946) 5.0R4 or above Click here for more information
905307 Dovecot and Pigeonhole Remote Code Execution Vulnerability (CVE-2019-11500) 5.0R4 or above Click here for more information
323753 Cisco Prime Infrastructure and EPNM UploadServlet Tar Directory Traversal Vulnerability (CVE-2019-1821) 5.0R4 or above Click here for more information
333972 Jenkins Repository Connector Plugin Stored Cross Site Scripting Vulnerability (CVE-2021-21618) 5.0R4 or above Click here for more information
323435 Realtek SDK - Miniigd UPnP SOAP Remote Code Execution Vulnerability (CVE-2014-8361) 5.0R4 or above Click here for more information
311440 Microsoft Internet Explorer ASLR Security Policy Bypass Vulnerability (CVE-2014-6368) 5.0R4 or above Click here for more information
711262 Microsoft Windows PDF Library Heap-based Buffer Overflow Vulnerability (CVE-2017-8728) 5.0R4 or above Click here for more information
321849 HPE Moonshot Provisioning Manager Appliance server_response Directory Traversal Vulnerability (CVE-2017-8977) 5.0R4 or above Click here for more information
322940 HP OpenView Network Node Manager Sprintf Buffer Overflow Vulnerability (CVE-2010-1961) 5.5R4 or above Click here for more information
321895 Microsoft Internet Explorer Jscript RegExpComp Compile Buffer Overflow Vulnerability (CVE-2017-11890) 5.0R4 or above Click here for more information
709794 Microsoft Word Memory Corruption Vulnerability (CVE-2015-0064) 5.0R4 or above Click here for more information
322279 Microsoft Edge Chakra GetPropertyBuiltins scriptFunction Type Confusion Vulnerability (CVE-2017-11914) 5.0R4 or above Click here for more information
710326 Microsoft Windows Media Center MCL Code Execution Vulnerability -1 (CVE-2016-0185) 5.0R4 or above Click here for more information
1905802 SMB Doublepulsar Remote Code Execution (CVE-2017-0143) 5.5R4 or above Click here for more information
305774 Microsoft Windows Internet Connection Signup Wizard Insecure Library Loading Vulnerability -2 (CVE-2010-3144) 5.0R4 or above Click here for more information
313125 Trend Micro Smart Protection Server Ccca_ajaxhandler.php Command Injection Vulnerability -1 (CVE-2016-6266) 5.5R5 or above Click here for more information
305702 WordPress Quick Post Widget Plugin Cross Site Scripting and Cross Site Request Forgery Vulnerability (CVE-2012-4226) 5.0R4 or above Click here for more information
334262 Netgear ProSAFE ConfigFileController Arbitrary File Upload Vulnerability (CVE-2021-27275) 5.0R4 or above Click here for more information
710630 Microsoft Office Out of Bounds Read Vulnerability (CVE-2016-7264) 5.0R4 or above Click here for more information
......