Rule Update

24-003 (January 16, 2024)


  DESCRIPTION

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

Ceph Messenger Client
1011911* - Linux Kernel Buffer Overflow Vulnerability (CVE-2023-44466)


Splunk Enterprise
1011912* - Splunk Enterprise Privilege Escalation Vulnerability (CVE-2023-32707)


Web Server Common
1010980* - Apache Airflow Remote Code Execution Vulnerability (CVE-2020-11978)


Web Server HTTPS
1011919* - Adobe RoboHelp Server Path Traversal Vulnerability (CVE-2023-22273)
1011942 - Cacti SQL Injection Vulnerability (CVE-2023-49085)
1011944 - Trend Micro Apex Central Cross-Site Scripting Vulnerability (CVE-2023-52326)
1011943 - Trend Micro Apex Central Local File Inclusion Vulnerability (CVE-2023-52325)


Web Server Miscellaneous
1011903* - MagnusBilling Remote Command Execution Vulnerability (CVE-2023-30258)


Web Server Squid
1011939 - Squid Proxy Heap Buffer Overflow Vulnerability (CVE-2023-46847)


Zoho ManageEngine Applications Manager
1011915* - Zoho ManageEngine Applications Manager Cross-Site Scripting Vulnerability (CVE-2023-38333)


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.