*** EX RELS 03346 Release *** Total number of signatures: 6027 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 4 rule(s): --------------- 1133891 EXPLOIT Zabbix Server Active Proxy Trapper Command Injection -2 (CVE-2017-2824) 1134033 WEB Supervisor XML-RPC Authenticated Remote Code Execution (CVE-2017-11610) 1134035 WEB HTTP Host Header Command Injection 1134045 WEB-CLIENT Microsoft Edge Use After Free -1 (CVE-2017-8652) Modified 6 rule(s): --------------- 1054965 WEB HTTP Basic Authorization Header Buffer Overflow 1055107 SHELLCODE Egg Hunter -1 1133572 WEB Shell Spawning Attempt via telnetd -1.b 1133919 WEB Nginx ngx_http_range_filter_module Integer Overflow -1 (CVE-2017-7529) 1134019 WEB Muieblackcat Scanner 1134027 EXPLOIT Trend Micro Control Manager cmdHandlerLicenseManager SQL Injection (CVE-2017-11384) Deleted 25 rule(s): --------------- 1056210 FTP FTP RETR Command Buffer Overflow (old rule) 1056716 SHELLCODE NOOP in HTTP URL (old rule) 1056923 EXPLOIT Citrix XenApp and XenDesktop XML Service Interface Stack Buffer Overflow (old rule) 1056927 EXPLOIT Sybase Open Server Null Byte Stack Memory Corruption (old rule) 1056946 WEB Microsoft SCOM Web Console XSS Vulnerability (CVE-2013-0010) (old rule) 1056984 FILE Adobe Reader heap overflow vulnerability (CVE-2013-0603) (old rule) 1056985 FILE Adobe Reader buffer overflow vulnerability (CVE-2013-0621) (old rule) 1056987 EXPLOIT Quest Software Big Brother Arbitrary File Deletion and Overwriting -2 (old rule) 1056988 EXPLOIT Quest Software Big Brother Arbitrary File Deletion and Overwriting -3 (old rule) 1056991 SSH Novell NetWare OpenSSH Buffer Overflow -2 (old rule) 1056994 FILE Adobe Reader heap overflow vulnerability (CVE-2013-0604) (old rule) 1056995 FILE Adobe Reader buffer overflow vulnerability (CVE-2013-0621) (old rule) 1056996 FILE Adobe Reader security bypass vulnerability (CVE-2013-0622) (old rule) 1056998 WEB-ACTIVEX Honeywell Tema Remote Installer ActiveX Remote Code Execution -1 (BID-50078) (old rule) 1057000 WEB-ACTIVEX Honeywell Tema Remote Installer ActiveX Remote Code Execution -2 (BID-50078) (old rule) 1057015 SCADA 7T Interactive Graphical SCADA System File Operations Buffer Overflows -2 (CVE-2011-1567) (old rule) 1057022 WEB PHP-Charts v1.0 PHP Code Execution Vulnerability (old rule) 1057027 WEB SonicWALL Multiple Products Authentication Bypass -1 (CVE-2013-1359) (old rule) 1057031 WEB ZoneMinder Video Server packageControl Command Execution (old rule) 1057039 WEB Microsoft XML Core Services Integer Truncation Memory Corruption (CVE-2013-0006) (old rule) 1057040 SSL Microsoft Windows SSL and TLS Security Feature Bypass -1 (CVE-2013-0013) (old rule) 1057041 WEB Ruby on Rails JSON Processor YAML Deserialization Code Execution (CVE-2013-0333) (old rule) 1057046 WEB Movable Type 4.2x, 4.3x Web Upgrade Remote Code Execution (CVE-2013-0209) (old rule) 1057052 WEB D-Link Router Change Password CSRF Vulnerability (old rule) 1112793 DB Oracle MySQL Database Unique SET Column Join Denial of Service -1 (old rule)