*** EX RELS 03495 Release *** Total number of signatures: 6013 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 5 rule(s): --------------- 1137349 SMTP OpenSMTPD smtp_session.c Command Execution -2.1 (CVE-2020-7247) 1137350 SMTP OpenSMTPD smtp_session.c Command Execution -2.2 (CVE-2020-7247) 1137370 WEB ZyXEL Multi-product pre-authentication command injection in weblogin.cgi -3 (CVE-2020-9054) 1137372 WEB TP-Link TL-WR849N Remote Code Execution -1.2 (CVE-2020-9374) 1137392 WEB Cisco IOS XE WebUI Authenticated Command Injection (CVE-2019-12651) Modified 8 rule(s): --------------- 1060515 SOCIAL Livejournal access via SSL -1 1135971 WEB Pulse Secure diag.cgi Command Injection -1 (CVE-2019-11539) 1135989 WEB vBulletin 5.x pre-auth RCE -1 (CVE-2019-16759) 1136316 WEB-CLIENT Microsoft Internet Explorer jscript.dll toJSON Use After Free -2 (CVE-2019-1429) 1136561 EXPLOIT Citrix Application Delivery Controller Remote Code Execution -1.1 (CVE-2019-19781) 1136772 EXPLOIT Citrix Application Delivery Controller Remote Code Execution -6.1 (CVE-2019-19781) 1136911 WEB TP-Link TL-WR849N Remote Code Execution -1.1 (CVE-2020-9374) 1137100 DNS ISC BIND TSIG Assertion Failure Denial of Service -1.1 (CVE-2020-8617) Deleted 5 rule(s): --------------- 1130494 SSL TLSv1.1 FREAK with CBC Cipher TLS_RSA_EXPORT_WITH_RC2_CBC_40_MD5 -1.2 (old rule) 1130495 SSL TLSv1.1 FREAK with CBC Cipher TLS_RSA_EXPORT_WITH_DES40_CBC_SHA -1.2 (old rule) 1130496 SSL TLSv1.1 FREAK with CBC Cipher TLS_DHE_RSA_EXPORT_WITH_DES40_CBC_SHA -1.2 (old rule) 1130498 SSL TLS FREAK with CBC Cipher TLS_RSA_EXPORT_WITH_RC2_CBC_40_MD5 -1.1 (old rule) 1130499 SSL TLS FREAK with CBC Cipher TLS_RSA_EXPORT_WITH_DES40_CBC_SHA -1.1 (old rule)