*** NK8 RELS 3510 Release *** Total number of signatures: 3005 Description ================================================================== In this signature, we addressed the exploits/vulnerabilities and applications as below: Added 8 rule(s): --------------- 1138088 WEB rConfig Network Device Configuration vendor.crud.php Arbitrary File Upload (CVE-2020-12255) 1138089 WEB Apache Airflow trigger origin Cross Site Scripting (CVE-2020-13944) 1138090 WEB Apache OpenMeetings NetTest Web Service Denial of Service (CVE-2020-13951) 1138091 WEB Apache Tapestry ContextAssetRequestHandler Information Disclosure (CVE-2020-13953) 1138092 WEB Zoho ManageEngine Applications Manager Buffer.jsp resourceid SQL Injection (CVE-2020-15927) 1138095 WEB Zoho ManageEngine Applications Manager UploadAction Arbitrary File Upload (CVE-2020-14008) 1138100 WEB SaltStack Salt API SSH Client Command Injection -1.2 (CVE-2020-16846) 1138101 WEB SaltStack Salt API SSH Client Command Injection -1.3 (CVE-2020-16846) Modified 1 rule(s): --------------- 1138076 WEB SaltStack Salt API SSH Client Command Injection -1.1 (CVE-2020-16846) Deleted 0 rule(s): ---------------