*** EX RELS 03477 Release *** Total number of signatures: 6009 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 8 rule(s): --------------- 1136792 WEB rConfig commands.inc.php SQL Injection -1 (CVE-2020-10220) 1136793 WEB rConfig commands.inc.php SQL Injection -2 (CVE-2020-10220) 1136796 WEB-CLIENT Mozilla Firefox Custom Elements Object Write After Free (CVE-2018-18500) 1136797 WEB ACME mini_httpd Arbitrary File Read -2 (CVE-2018-18778) 1136798 WEB rConfig commands.inc.php SQL Injection -3 (CVE-2020-10220) 1136806 WEB PlaySMS index.php Unauthenticated Template Injection Code Execution (CVE-2020-8644) 1136810 WEB Apache Solr Remote Code Execution via Velocity Template (CVE-2019-17558) 1162400 DB_ERP MSSQL access via TCP -2 Modified 6 rule(s): --------------- 1061317 DB_ERP MSSQL access via TCP -3.1 1061497 DB_ERP MSSQL access via TCP -3.2 1135173 WEB ACME mini_httpd Arbitrary File Read -1 (CVE-2018-18778) 1135965 WEB CentOS Web Panel Authenticated OS Command Injection -1.2 (CVE-2018-18322) 1160834 DB_ERP MSSQL access via TCP -1 1162234 VOIP Facetime access via SSL -1 Deleted 0 rule(s): ---------------