Rule Update

22-046 (September 20, 2022)


  DESCRIPTION

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

HP Intelligent Management Center (IMC)
1011534 - Apache OFBiz Server-Side Template Injection Vulnerability (CVE-2022-25813)


IPSec-IKE
1011536 - Microsoft Windows Internet Key Exchange (IKE) Protocol Extensions Remote Code Execution Vulnerability (CVE-2022-34721)


Unix SSH
1011515* - Detected SSH Client Traffic - 1 (ATT&CK T1021.004)


Web Application PHP Based
1011537 - WordPress 'BackupBuddy' Plugin Directory Traversal Vulnerability (CVE-2022-31474)


Web Application Ruby Based
1011243* - Grafana Path Traversal Vulnerability (CVE-2021-43798)


Web Server Miscellaneous
1011535 - Jenkins 'Plot' Plugin Stored Cross-Site Scripting Vulnerability (CVE-2022-34783)


Zoho ManageEngine
1011527* - Zoho ManageEngine Multiple Products 'getDNSResolveOption' Command Injection Vulnerability (CVE-2022-37024)


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

There are no new or updated Log Inspection Rules in this Security Update.