Rule Update

24-019 (April 9, 2024)


  DESCRIPTION

* indicates a new version of an existing rule

Deep Packet Inspection Rules:

Ivanti Avalanche
1011759* - Ivanti Avalanche Multiple Arbitrary File Upload Vulnerabilities
1011955* - Ivanti Avalanche XML External Entity Information Disclosure Vulnerability (CVE-2023-46265)


Java RMI
1012013 - Progress OpenEdge Authentication Bypass Vulnerability (CVE-2024-1403)


Web Application PHP Based
1011993* - LibreNMS SQL Injection Vulnerability (CVE-2023-5591)
1012014 - WordPress 'LayerSlider' Plugin SQL Injection Vulnerability (CVE-2024-2879)


Web Server Adobe ColdFusion
1012011 - Adobe ColdFusion Improper Access Control Vulnerability (CVE-2024-20767)


Web Server Miscellaneous
1011994* - Graylog Open Insecure Deserialization Vulnerability (CVE-2024-24824)


Integrity Monitoring Rules:

There are no new or updated Integrity Monitoring Rules in this Security Update.


Log Inspection Rules:

1010349* - Docker Daemon Remote API Calls