*** NK8 RELS 3388 Release *** Total number of signatures: 3233 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 2 rule(s): --------------- 1134871 WEB Monstra CMS Authenticated Arbitrary File Upload (CVE-2017-18048) 1134872 WEB Manage Engine Exchange Reporter Plus Unauthenticated RCE Modified 10 rule(s): --------------- 1055378 TROJAN Android FakeTimer Activity -2 1055379 TROJAN Android FakeTimer Activity -3 1055380 TROJAN Android FakeTimer Activity -4 1055381 TROJAN Android FakeTimer Activity -5 1055383 TROJAN Android FakeToken Activity -1 1055384 TROJAN Android FakeToken Activity -2 1055385 TROJAN Android FakeSMS Activity -1 1055386 TROJAN Android FakeSMS Activity -2 1055387 TROJAN Android RootSmart Activity 1134626 WEB Oracle WebLogic Server CVE-2018-2628 Insecure Deserialization Deleted 10 rule(s): --------------- 1056167 WEB Cross-site Scripting Attempt -12 (old rule) 1056203 EXPLOIT Poison Ivy CnC Server Buffer Overflow (old rule) 1056491 RPC Microsoft Windows Server Service RPC Request Handling Buffer Overflow -2 (MS08-067,CVE-2008-4250) (old rule) 1130103 FILE Microsoft Windows Object Packager Remote Code Execution -2 (CVE-2014-4114) (old rule) 1130112 FILE Microsoft Windows Object Packager Remote Code Execution -3 (CVE-2014-4114) (old rule) 1130368 WEB Apache APR_PSPrintf Memory Corruption (CVE-2003-0245) (old rule) 1130591 MALWARE Suspicious User-Agent -1 (old rule) 1133248 WEB-ACTIVEX Samsung iPOLiS Device Manager WriteConfigValue Stack Buffer Overflow -3 (CVE-2015-0555) (old rule) 1133400 WEB SearchBlox Multiple Authentication Bypass Vulnerabilities -4 (CVE-2015-7919) (old rule) 1133633 EXPLOIT Microsoft Windows Kerberos KDC Privilege Escalation -1 (CVE-2014-6324) (old rule)