*** NK8 RELS 3414 Release *** Total number of signatures: 3216 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 3 rule(s): --------------- 1135308 WEB WordPress Plugin Pie Register Blind SQL Injection (CVE-2018-10969) 1135336 WEB GitLab Wiki API Attachments Command Injection (CVE-2018-18649) 1135340 SCADA Advantech WebAccess SCADA WADashboard writeFile Arbitrary File Overwrite -1.u (CVE-2018-15705) Modified 7 rule(s): --------------- 1055189 WEB SQL injection attempt -10 1131243 WEB-CLIENT Microsoft Internet Explorer JScript9 Memory Corruption Vulnerability -1 (CVE-2015-2419) 1134268 TELNET Default Password Login -22 1134550 TELNET Default Password Login -24 1134551 TELNET Default Password Login -25 1134552 TELNET Default Password Login -26 1134918 EXPLOIT Mikrotik RouterOS Winbox Critical Vulnerability (CVE-2018-14847) Deleted 10 rule(s): --------------- 1053145 WEB-ACTIVEX Microsoft Windows Scripting Shell ActiveX Creation (old rule) 1054796 WEB HTTP Host Header Buffer Overflow (old rule) 1054902 EXPLOIT Embarcadero InterBase Connect Request Multiple Stack Buffer Overflows (old rule) 1055099 EXPLOIT Squid Proxy Gopher Response Processing Buffer Overflow (old rule) 1055102 SCADA Measuresoft ScadaPro Remote Command Execution (CVE-2011-3490) (old rule) 1055224 LDAP MIT Kerberos KDC LDAP Back Null Pointer Dereference Denial of Service (old rule) 1055453 EXPLOIT libpng png_inflate Buffer Overflow (old rule) 1056284 DB HP Database Archiving Software GIOP Parsing Buffer Overflow (old rule) 1056762 WEB-CLIENT Suspicious HTML Iframe Tag -7 (old rule) 1056907 DB IBM solidDB solid.exe Authentication Bypass -1 (old rule)