*** NK8 RELS 3430 Release *** Total number of signatures: 3168 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 9 rule(s): --------------- 1135629 WEB Nagios XI Autodiscovery Job Command Injection -1.1 (CVE-2019-9164) 1135634 RDP Microsoft Remote Desktop Services Remote Code Execution Vulnerability (CVE-2019-0708) 1135639 WEB D-Link DIR8xx Information Disclosure (EDB-42729) 1135641 WEB ASUS DSL-N12E_C1 1.1.2.3_345 - Remote Command Execution -1.1 (CVE-2018-15887) 1135643 WEB ASUS DSL-N12E_C1 1.1.2.3_345 - Remote Command Execution -1.2 (CVE-2018-15887) 1135644 SMB Microsoft Windows SMB Server SMBv2 Smb2UpdateLeaseFileName Code Execution (CVE-2019-0630) 1161680 PRIPROTOCOL Thunder access via SSL -1 1161681 PRIPROTOCOL Thunder login via SSL -1 1161682 PRIPROTOCOL Thunder access via TCP -2 Modified 4 rule(s): --------------- 1135577 WEB Oracle Weblogic 10.3.6.0.0 / 12.1.3.0.0 Remote Code Execution -2 (CVE-2019-2725) 1135617 WEB VACRON NVR board.cgi cmd Remote Command Execution 1135618 EXPLOIT SAP Gateway ACL Unauthenticated Remote Command Execution 1135619 WEB Jenkins ACL Bypass and Metaprogramming RCE -1.1 (CVE-2018-1000861) Deleted 20 rule(s): --------------- 1130178 ICMP FreeBSD rtsold dname_labeldec Stack Buffer Overflow (CVE-2014-3954) (old rule) 1130181 FILE Microsoft Windows OLE Packer Remote Code Execution -3 (CVE-2014-6352) (old rule) 1130185 WEB-CLIENT Microsoft Internet Explorer Memory Corruption Vulnerability -1 (CVE-2014-6347) (old rule) 1130186 WEB-CLIENT Microsoft Internet Explorer Cross-domain Information Disclosure Vulnerability (CVE-2014-6346) (old rule) 1130187 WEB-CLIENT Microsoft Internet Explorer Cross-domain Information Disclosure Vulnerability (CVE-2014-6345) (old rule) 1130192 WEB-CLIENT Microsoft Internet Explorer Cross-domain Information Disclosure Vulnerability (CVE-2014-6340) (old rule) 1130195 FILE Microsoft Office Bad Index Remote Code Execution Vulnerability -1 (CVE-2014-6334) (old rule) 1130196 WEB-CLIENT Microsoft Internet Explorer Memory Corruption Vulnerability (CVE-2014-6337) (old rule) 1130197 FILE Microsoft Office PapxFkp rgbx bOffset Memory Corruption -1 (CVE-2014-6335) (old rule) 1130198 WEB Exchange URL Redirection Vulnerability (CVE-2014-6336) (old rule) 1130203 FILE Adobe Flash Player and AIR Memory Corruption Vulnerability (CVE-2014-0576) (old rule) 1130204 FILE Adobe Flash Player And AIR Type Confusion Remote Code Execution Vulnerability (CVE-2014-0577) (old rule) 1130205 FILE Adobe Flash Player and AIR Memory Corruption Vulnerability (CVE-2014-0581) (old rule) 1130206 FILE Adobe Flash Player And AIR Type Confusion Remote Code Execution Vulnerability (CVE-2014-0584) (old rule) 1130207 FILE Adobe Flash Player and AIR Use After Free Remote Code Execution Vulnerability (CVE-2014-0588) (old rule) 1130208 FILE Adobe Flash Player and AIR Unspecified Memory Corruption Vulnerability (CVE-2014-8441) (old rule) 1130216 SSL Mozilla Network Security Services RSA Signature Forgery (CVE-2014-1568) (old rule) 1130222 WEB-CLIENT Microsoft Internet Explorer Memory Corruption Vulnerability -3 (CVE-2014-4050) (old rule) 1130223 WEB-CLIENT Oracle Java AtomicReferenceFieldUpdater Type Confusion -2 (CVE-2014-4262) (old rule) 1130225 SSL OpenSSL dtls1_process_out_of_seq_message Denial of Service -2 (CVE-2014-3507) (old rule)