*** NK8 RELS 3470 Release *** Total number of signatures: 3160 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 8 rule(s): --------------- 1136663 WEB Apache Olingo XML Deserializer External Entity Injection -1.1 (CVE-2019-17554) 1136665 WEB Apache Olingo XML Deserializer External Entity Injection -1.2 (CVE-2019-17554) 1136672 WEB Oracle E-Business Suite Human Resources CVE-2020-2586 SQL Injection 1136673 WEB Gila CMS deleteAction Local File Inclusion (CVE-2020-5513) 1136683 WEB Cacti Group Cacti graphs.php SQL Injection (CVE-2019-17357) 1162234 VOIP Facetime access via SSL -1 1162242 TERMINAL RescueAssist access via SSL -1 1162243 TERMINAL RescueAssist login via SSL -1 Modified 5 rule(s): --------------- 1132280 FILE Adobe Acrobat and Reader Memory Corruption (CVE-2016-0931) 1133231 ICMP BlackNurse Attack 1134652 WEB Drupal Core drupalgeddon3 Authenticated Remote Code Execution -5 (CVE-2018-7602) 1135909 WEB SUNNET WMPro Command Injection Vulnerability (CVE-2019-11062) 1160085 TERMINAL RescueAssist access via SSL -2 Deleted 9 rule(s): --------------- 1131159 WEB-CLIENT Javascript Obfuscation in Exploit Kits - 19 (Ransomware Attack Vector) (old rule) 1131160 WEB-CLIENT Javascript Obfuscation in Exploit Kits - 20 (Ransomware Attack Vector) (old rule) 1131161 WEB-CLIENT Javascript Obfuscation in Exploit Kits - 21 (Ransomware Attack Vector) (old rule) 1131163 WEB-CLIENT Javascript Obfuscation in Exploit Kits - 23 (Ransomware Attack Vector) (old rule) 1131165 WEB-CLIENT Javascript Obfuscation in Exploit Kits - 25 (Ransomware Attack Vector) (old rule) 1131166 WEB-CLIENT Javascript Obfuscation in Exploit Kits - 26 (Ransomware Attack Vector) (old rule) 1131167 WEB-CLIENT Javascript Obfuscation in Exploit Kits - 27 (Ransomware Attack Vector) (old rule) 1131169 WEB-CLIENT Javascript Obfuscation in Exploit Kits - 28 (Ransomware Attack Vector) (old rule) 1131188 WEB-CLIENT Javascript Obfuscation in Exploit Kits - 29 (Ransomware Attack Vector) (old rule)